Advisories
Cisco PSIRTExploitedHIGH2019-02-27
Cisco RV110W, RV130W, and RV215W Routers Management Interface Remote Command Execution Vulnerability
CVEs:CVE-2019-1663
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-212336 |
affected |
Cisco |
— |
— |
| CVRFPID-212341 |
affected |
Cisco |
— |
— |
| CVRFPID-212498 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-27
Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools Update Service Command Injection Vulnerability
CVEs:CVE-2019-1674
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-97148 |
affected |
Cisco |
— |
— |
| CVRFPID-97151 |
affected |
Cisco |
— |
— |
| CVRFPID-97163 |
affected |
Cisco |
— |
— |
| CVRFPID-97166 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco IP Phone 7800 and 8800 Series Cisco Discovery Protocol and Link Layer Discovery Protocol Denial of Service Vulnerability
CVEs:CVE-2019-1684
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-205455 |
affected |
Cisco |
— |
— |
| CVRFPID-211541 |
affected |
Cisco |
— |
— |
| CVRFPID-238624 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco HyperFlex Software Unauthenticated Root Access Vulnerability
CVEs:CVE-2019-1664
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-230814 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco Unity Connection Reflected Cross-Site Scripting Vulnerability
CVEs:CVE-2019-1685
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-73608 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco Firepower 9000 Series Firepower 2-Port 100G Double-Width Network Module Queue Wedge Denial of Service Vulnerability
CVEs:CVE-2019-1700
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-225888 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco Firepower Threat Defense Software SSL or TLS Denial of Service Vulnerability
CVEs:CVE-2019-1691
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-220203 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco HyperFlex Unauthenticated Statistics Retrieval Vulnerability
CVEs:CVE-2019-1666
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-230814 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco HyperFlex Arbitrary Statistics Write Vulnerability
CVEs:CVE-2019-1667
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-230814 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco Hyperflex Stored Cross-Site Scripting Vulnerability
CVEs:CVE-2019-1665
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-230814 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco HyperFlex Software Command Injection Vulnerability
CVEs:CVE-2018-15380
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-247050 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco IoT Field Network Director XML External Entity Vulnerability
CVEs:CVE-2019-1698
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-227605 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco SPA112, SPA525, and SPA5x5 Series IP Phones Certificate Validation Vulnerability
CVEs:CVE-2019-1683
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-117236 |
affected |
Cisco |
— |
— |
| CVRFPID-255654 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco Network Convergence System 1000 Series TFTP Directory Traversal Vulnerability
CVEs:CVE-2019-1681
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-255125 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco Prime Collaboration Assurance Software Unauthenticated Access Vulnerability
CVEs:CVE-2019-1662
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-209582 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco Prime Infrastructure Certificate Validation Vulnerability
CVEs:CVE-2019-1659
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-190324 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-20
Cisco Webex Teams for iOS Arbitrary File Upload Vulnerability
CVEs:CVE-2019-1689
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-210403 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-15
Container Privilege Escalation Vulnerability Affecting Cisco Products: February 2019
CVEs:CVE-2019-5736
Cisco PSIRTHIGH2019-02-12
Cisco Network Assurance Engine CLI Access with Default Password Vulnerability
CVEs:CVE-2019-1688
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-255985 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco Aironet Active Sensor Static Credentials Vulnerability
CVEs:CVE-2019-1675
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-254689 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco Meeting Server Denial of Service Vulnerability
CVEs:CVE-2019-1678
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-217166 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco Unified Intelligence Center Software Cross-Site Scripting Vulnerability
CVEs:CVE-2019-1670
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-198393 |
affected |
Cisco |
— |
— |
| CVRFPID-92631 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco Firepower Management Center Cross-Site Scripting Vulnerability
CVEs:CVE-2019-1671
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-212162 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco Identity Services Engine Cross-Site Scripting Vulnerability
CVEs:CVE-2019-1673
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-111903 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco Meeting Server SIP Processing Denial of Service Vulnerability
CVEs:CVE-2019-1676
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-217166 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco TelePresence Conductor, Cisco Expressway Series, and Cisco TelePresence Video Communication Server REST API Server-Side Request Forgery Vulnerability
CVEs:CVE-2019-1679
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-202683 |
affected |
Cisco |
— |
— |
| CVRFPID-203755 |
affected |
Cisco |
— |
— |
| CVRFPID-209614 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco TelePresence Management Suite Web Services
CVEs:CVE-2019-1660
Cisco PSIRTHIGH2019-02-06
Cisco TelePresence Management Suite Cross-Site Scripting Vulnerability
CVEs:CVE-2019-1661
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-191859 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco Webex Meetings for Android Cross-Site Scripting Vulnerability
CVEs:CVE-2019-1677
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-203919 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco Webex Meetings Online Content Injection Vulnerability
CVEs:CVE-2019-1680
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-97151 |
affected |
Cisco |
— |
— |
Cisco PSIRTHIGH2019-02-06
Cisco Web Security Appliance Decryption Policy Bypass Vulnerability
CVEs:CVE-2019-1672
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-189789 |
affected |
Cisco |
— |
— |