CVE-2023-20060
- EPSS 0.86%
- Published 15.11.2024 16:15:25
- Last modified 01.08.2025 18:53:55
A vulnerability in the web-based management interface of Cisco Prime Collaboration Deployment could allow an unauthenticated, remote attacker to conduct a cross-site scripting attack against a user of the interface. This vulnerability exists becau...
CVE-2018-15450
- EPSS 0.28%
- Published 08.11.2018 20:29:00
- Last modified 21.11.2024 03:50:49
A vulnerability in the web-based UI of Cisco Prime Collaboration Assurance could allow an authenticated, remote attacker to overwrite files on the file system. The vulnerability is due to insufficient input validation. An attacker could exploit this ...
CVE-2018-15389
- EPSS 0.81%
- Published 05.10.2018 14:29:07
- Last modified 21.11.2024 03:50:40
A vulnerability in the install function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to access the administrative web interface using a default hard-coded username and password that are used during i...
CVE-2018-0391
- EPSS 0.53%
- Published 01.08.2018 20:29:00
- Last modified 21.11.2024 03:38:07
A vulnerability in the password change function of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker to cause the system to become inoperable. The vulnerability is due to insufficient validation of a password change...
CVE-2018-0336
- EPSS 1.26%
- Published 07.06.2018 21:29:00
- Last modified 21.11.2024 03:38:00
A vulnerability in the batch provisioning feature of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker to escalate privileges to the Administrator level. The vulnerability is due to insufficient authorization enforc...
CVE-2018-0335
- EPSS 0.53%
- Published 07.06.2018 21:29:00
- Last modified 21.11.2024 03:38:00
A vulnerability in the web portal authentication process of Cisco Prime Collaboration Provisioning could allow an unauthenticated, local attacker to view sensitive data. The vulnerability is due to improper logging of authentication data. An attacker...
CVE-2018-0320
- EPSS 2.02%
- Published 07.06.2018 12:29:00
- Last modified 21.11.2024 03:37:58
A vulnerability in the web framework code of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to execute arbitrary SQL queries. The vulnerability is due to a lack of proper validation on user-supplied input...
CVE-2018-0322
- EPSS 1.21%
- Published 07.06.2018 12:29:00
- Last modified 21.11.2024 03:37:58
A vulnerability in the web management interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attacker to modify sensitive data that is associated with arbitrary accounts on an affected device. The vulnerability...
CVE-2018-0321
- EPSS 2.74%
- Published 07.06.2018 12:29:00
- Last modified 21.11.2024 03:37:58
A vulnerability in Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to access the Java Remote Method Invocation (RMI) system. The vulnerability is due to an open port in the Network Interface and Configurat...
CVE-2018-0319
- EPSS 2.49%
- Published 07.06.2018 12:29:00
- Last modified 21.11.2024 03:37:58
A vulnerability in the password recovery function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to gain unauthorized access to an affected device. The vulnerability is due to insufficient validation o...