cisco-sa-20161221-cco
Cisco CloudCenter Orchestrator Docker Engine Privilege Escalation Vulnerability
CVEs:CVE-2016-9223
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-224310 | affected | Cisco | — | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).
Cisco CloudCenter Orchestrator Docker Engine Privilege Escalation Vulnerability
CVEs:CVE-2016-9223
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-224310 | affected | Cisco | — | — |
Cisco Intercloud Fabric Database Static Credentials Vulnerability
CVEs:CVE-2016-9217
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-223093 | affected | Cisco | — | — |
Cisco Jabber Guest Server HTTP URL Redirection Vulnerability
CVEs:CVE-2016-9224
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-203403 | affected | Cisco | — | — |
Cisco AnyConnect Secure Mobility Client Local Privilege Escalation Vulnerability
CVEs:CVE-2016-9192
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-109810 | affected | Cisco | — | — |
Cisco ASR 5000 Series IPv6 Packet Processing Denial of Service Vulnerability
CVEs:CVE-2016-6467
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-193199 | affected | Cisco | — | — |
Cisco ASR 5000 Series IKEv2 Denial of Service Vulnerability
CVEs:CVE-2016-9203
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-193199 | affected | Cisco | — | — |
Cisco Security Appliances AsyncOS Software Update Server Certificate Validation Vulnerability
CVEs:CVE-2016-1411
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-189789 | affected | Cisco | — | — |
| CVRFPID-189790 | affected | Cisco | — | — |
| CVRFPID-189791 | affected | Cisco | — | — |
Cisco IOx Application-Hosting Framework Directory Traversal Vulnerability
CVEs:CVE-2016-9199
Cisco Emergency Responder Cross-Site Request Forgery Vulnerability
CVEs:CVE-2016-6468
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-4844 | affected | Cisco | — | — |
Cisco Emergency Responder Directory Traversal Vulnerability
CVEs:CVE-2016-9208
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-4844 | affected | Cisco | — | — |
Cisco ONS 15454 Series Multiservice Provisioning Platforms TCP Port Management Denial of Service Vulnerability
CVEs:CVE-2016-9211
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-87908 | affected | Cisco | — | — |
Cisco Unified Communications Manager Administration Page Cross-Site Scripting Vulnerability
CVEs:CVE-2016-9206
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-88444 | affected | Cisco | — | — |
Cisco Unified Communications Manager Unified Reporting Upload Tool Directory Traversal Vulnerability
CVEs:CVE-2016-9210
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-88444 | affected | Cisco | — | — |
Cisco Email Security Appliance Content Filter Bypass Vulnerability
CVEs:CVE-2016-6465
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-189789 | affected | Cisco | — | — |
| CVRFPID-189790 | affected | Cisco | — | — |
Cisco Email Security Appliance SMTP Cross-Site Scripting Vulnerability
CVEs:CVE-2016-9202
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-189790 | affected | Cisco | — | — |
Cisco Expressway Series Software Security Bypass Vulnerability
CVEs:CVE-2016-9207
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-112250 | affected | Cisco | — | — |
| CVRFPID-202683 | affected | Cisco | — | — |
Cisco FireAMP Connector Endpoint Software Denial of Service Vulnerability
CVEs:CVE-2016-6449
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-221075 | affected | Cisco | — | — |
Cisco Firepower Management Center and Cisco FireSIGHT System Software Malicious Software Detection Bypass Vulnerability
CVEs:CVE-2016-9193
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-205007 | affected | Cisco | — | — |
| CVRFPID-212171 | affected | Cisco | — | — |
| CVRFPID-212172 | affected | Cisco | — | — |
| CVRFPID-213676 | affected | Cisco | — | — |
| CVRFPID-213754 | affected | Cisco | — | — |
| CVRFPID-216309 | affected | Cisco | — | — |
| CVRFPID-222771 | affected | Cisco | — | — |
Cisco FirePOWER Malware Protection Bypass Vulnerability
CVEs:CVE-2016-9209
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-220205 | affected | Cisco | — | — |
| CVRFPID-220206 | affected | Cisco | — | — |
| CVRFPID-220207 | affected | Cisco | — | — |
| CVRFPID-223029 | affected | Cisco | — | — |
| CVRFPID-223031 | affected | Cisco | — | — |
| CVRFPID-223033 | affected | Cisco | — | — |
Cisco Hybrid Media Service Privilege Escalation Vulnerability
CVEs:CVE-2016-6470
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-222576 | affected | Cisco | — | — |
Cisco Intercloud Fabric Director Static Credentials Vulnerability
CVEs:CVE-2016-9204
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-195842 | affected | Cisco | — | — |
Cisco IOS Frame Forwarding Denial of Service Vulnerability
CVEs:CVE-2016-6473
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-2097 | affected | Cisco | — | — |
Cisco IOS and IOS XE Software SSH X.509 Authentication Bypass Vulnerability
CVEs:CVE-2016-6474
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-2097 | affected | Cisco | — | — |
Cisco IOS XR Software HTTP 2.0 Request Handling Event Service Daemon Denial of Service Vulnerability
CVEs:CVE-2016-9205
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-5834 | affected | Cisco | — | — |
Cisco IOS and Cisco IOS XE Software Zone-Based Firewall Feature Bypass Vulnerability
CVEs:CVE-2016-9201
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-2097 | affected | Cisco | — | — |
Cisco IOS XR Software Default Credentials Vulnerability
CVEs:CVE-2016-9215
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-5834 | affected | Cisco | — | — |
Cisco Identity Services Engine Active Directory Integration Component Denial of Service Vulnerability
CVEs:CVE-2016-9198
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-111903 | affected | Cisco | — | — |
Cisco Identity Services Engine Cross-Site Scripting Vulnerability
CVEs:CVE-2016-9214
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-111903 | affected | Cisco | — | — |
Cisco Prime Collaboration Assurance Cross-Site Scripting Vulnerability
CVEs:CVE-2016-9200
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-209582 | affected | Cisco | — | — |
Cisco Unified Communications Manager IM and Presence Service Information Disclosure Vulnerability
CVEs:CVE-2016-6464
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-189784 | affected | Cisco | — | — |
Cisco Firepower Management Center Information Disclosure Vulnerability
CVEs:CVE-2016-6471
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-205007 | affected | Cisco | — | — |
| CVRFPID-212162 | affected | Cisco | — | — |
Cisco Web Security Appliance HTTP URL Denial of Service Vulnerability
CVEs:CVE-2016-6469
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-189789 | affected | Cisco | — | — |
Cisco Web Security Appliance Drop Decrypt Policy Bypass Vulnerability
CVEs:CVE-2016-9212
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-189789 | affected | Cisco | — | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.