cisco-sa-20181128-plm-sql-inject
Cisco Prime License Manager SQL Injection Vulnerability
CVEs:CVE-2018-15441
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-203607 | affected | Cisco | — | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).
Cisco Prime License Manager SQL Injection Vulnerability
CVEs:CVE-2018-15441
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-203607 | affected | Cisco | — | — |
Cisco Integrated Management Controller Supervisor SQL Injection Vulnerability
CVEs:CVE-2018-15447
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-209194 | affected | Cisco | — | — |
Cisco Unity Express Arbitrary Command Execution Vulnerability
CVEs:CVE-2018-15381
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-6046 | affected | Cisco | — | — |
Cisco Energy Management Suite Cross-Site Request Forgery Vulnerability
CVEs:CVE-2018-15445
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-248261 | affected | Cisco | — | — |
Cisco Energy Management Suite XML External Entity Vulnerability
CVEs:CVE-2018-15444
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-248261 | affected | Cisco | — | — |
Cisco Firepower Detection Engine TCP Intrusion Prevention System Rule Bypass Vulnerability
CVEs:CVE-2018-15443
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-212162 | affected | Cisco | — | — |
Cisco Immunet and Cisco AMP for Endpoints System Scan Denial of Service Vulnerability
CVEs:CVE-2018-15437
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-221075 | affected | Cisco | — | — |
| CVRFPID-248837 | affected | Cisco | — | — |
Cisco Meeting Server Information Disclosure Vulnerability
CVEs:CVE-2018-15446
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-217166 | affected | Cisco | — | — |
Cisco Meraki Local Status Page Privilege Escalation Vulnerability
CVEs:CVE-2018-0284
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-204723 | affected | Cisco | — | — |
Cisco Prime Collaboration Assurance File Overwrite Vulnerability
CVEs:CVE-2018-15450
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-209582 | affected | Cisco | — | — |
Cisco Prime Service Catalog Cross-Site Scripting Vulnerability
CVEs:CVE-2018-15451
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-202401 | affected | Cisco | — | — |
Cisco Registered Envelope Service Information Disclosure Vulnerability
CVEs:CVE-2018-15448
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-225817 | affected | Cisco | — | — |
Cisco Small Business Switches Privileged Access Vulnerability
CVEs:CVE-2018-15439
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-187435 | affected | Cisco | — | — |
| CVRFPID-187436 | affected | Cisco | — | — |
| CVRFPID-227821 | affected | Cisco | — | — |
| CVRFPID-227830 | affected | Cisco | — | — |
| CVRFPID-227834 | affected | Cisco | — | — |
Cisco Content Security Management Appliance Cross-Site Scripting Vulnerability
CVEs:CVE-2018-15393
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-189791 | affected | Cisco | — | — |
Cisco Stealthwatch Management Console Authentication Bypass Vulnerability
CVEs:CVE-2018-15394
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-245631 | affected | Cisco | — | — |
Cisco Video Surveillance Media Server Denial of Service Vulnerability
CVEs:CVE-2018-15449
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-246808 | affected | Cisco | — | — |
| CVRFPID-95900 | affected | Cisco | — | — |
Apache Struts Commons FileUpload Library Remote Code Execution Vulnerability Affecting Cisco Products: November 2018
CVEs:CVE-2016-1000031
Texas Instruments Bluetooth Low Energy Denial of Service and Remote Code Execution Vulnerability
CVEs:CVE-2018-16986
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-190024 | affected | Cisco | — | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.