CVE-2011-4237
- EPSS 0.28%
- Veröffentlicht 03.05.2012 10:11:39
- Zuletzt bearbeitet 11.04.2025 00:51:21
CRLF injection vulnerability in autologin.jsp in Cisco CiscoWorks Common Services 4.0, as used in Cisco Prime LAN Management Solution and other products, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting att...
- EPSS 0.25%
- Veröffentlicht 22.10.2011 02:59:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Sybase SQL Anywhere database component in Cisco CiscoWorks Common Services 3.x and 4.x before 4.1 allows remote attackers to obtain potentially sensitive information about the engine name and database port via an unspecified request to UDP port 2...
- EPSS 27.53%
- Veröffentlicht 20.10.2011 00:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Home Page component in Cisco CiscoWorks Common Services before 4.1 on Windows, as used in CiscoWorks LAN Management Solution, Cisco Security Manager, Cisco Unified Service Monitor, Cisco Unified Operations Manager, CiscoWorks QoS Policy Manager, ...
CVE-2011-0966
- EPSS 42%
- Veröffentlicht 20.05.2011 22:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Directory traversal vulnerability in cwhp/auditLog.do in the Homepage Auditing component in Cisco CiscoWorks Common Services 3.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter, aka Bug ID CSCto355...
CVE-2011-0961
- EPSS 14.9%
- Veröffentlicht 20.05.2011 22:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in cwhp/device.center.do in the Help servlet in Cisco CiscoWorks Common Services 3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the device parameter, aka Bug ID CSCto12704.
- EPSS 28.4%
- Veröffentlicht 29.10.2010 19:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple buffer overflows in the authentication functionality in the web-server module in Cisco CiscoWorks Common Services before 4.0 allow remote attackers to execute arbitrary code via a session on TCP port (1) 443 or (2) 1741, aka Bug ID CSCti4135...
- EPSS 1.62%
- Veröffentlicht 21.05.2009 14:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Directory traversal vulnerability in the TFTP service in Cisco CiscoWorks Common Services (CWCS) 3.0.x through 3.2.x on Windows, as used in Cisco Unified Service Monitor, Security Manager, TelePresence Readiness Assessment Manager, Unified Operations...
CVE-2008-2054
- EPSS 4.63%
- Veröffentlicht 29.05.2008 16:32:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Cisco CiscoWorks Common Services 3.0.3 through 3.1.1 allows remote attackers to execute arbitrary code on a client machine via unknown vectors.
- EPSS 80.86%
- Veröffentlicht 31.05.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spoofed packet with a large timer value, which causes ...
CVE-2004-0079
- EPSS 2.06%
- Veröffentlicht 23.11.2004 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.