Cisco Security Advisories · April 2019 — Cisco Security Advisories
31 advisories 33 CVEs

PSIRT bulletins (cisco-sa-*) and cross-source CVEs naming Cisco for 2019-04. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

Advisories

cisco-sa-20190417-asr9k-exr

Cisco PSIRTHIGH2019-04-17

Cisco IOS XR 64-Bit Software for Cisco ASR 9000 Series Aggregation Services Routers Network Isolation Vulnerability

CVEs:CVE-2019-1710

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-202356 affected Cisco
CVRFPID-5834 affected Cisco
Upstream advisory

cisco-sa-20190417-ces-tvcs-dos

Cisco PSIRTHIGH2019-04-17

Cisco Expressway Series and Cisco TelePresence Video Communication Server Denial of Service Vulnerability

CVEs:CVE-2019-1720

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-112250 affected Cisco
CVRFPID-202683 affected Cisco
Upstream advisory

cisco-sa-20190417-es-tvcs-dos

Cisco PSIRTHIGH2019-04-17

Cisco Expressway Series and Cisco TelePresence Video Communication Server Denial of Service Vulnerability

CVEs:CVE-2019-1721

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-112250 affected Cisco
CVRFPID-202683 affected Cisco
Upstream advisory

cisco-sa-20190417-ex-vcs-xsrf

Cisco PSIRTMEDIUM2019-04-17

Cisco Expressway Series and Cisco TelePresence Video Communication Server Cross-Site Request Forgery Vulnerability

CVEs:CVE-2019-1722

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-112250 affected Cisco
CVRFPID-202683 affected Cisco
Upstream advisory

cisco-sa-20190417-iosxracl

Cisco PSIRT2019-04-17

Cisco ASR 9000 Series Aggregation Services Routers ACL Bypass Vulnerability

CVEs:CVE-2019-1686

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-202356 affected Cisco
CVRFPID-5834 affected Cisco
Upstream advisory

cisco-sa-20190417-ucs-cli-inj

Cisco PSIRTHIGH2019-04-17

Cisco UCS B-Series Blade Servers Local Management CLI Arbitrary File Creation or CLI Parameter Injection Vulnerability

CVEs:CVE-2019-1725

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-208962 affected Cisco
Upstream advisory

cisco-sa-20190417-wlc-csrf

Cisco PSIRTMEDIUM2019-04-17

Cisco Wireless LAN Controller Software Cross-Site Request Forgery Vulnerability

CVEs:CVE-2019-1797

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-109058 affected Cisco
CVRFPID-109059 affected Cisco
CVRFPID-109060 affected Cisco
CVRFPID-109061 affected Cisco
CVRFPID-114900 affected Cisco
CVRFPID-114902 affected Cisco
CVRFPID-114903 affected Cisco
CVRFPID-114904 affected Cisco
CVRFPID-114905 affected Cisco
CVRFPID-188675 affected Cisco
CVRFPID-188676 affected Cisco
CVRFPID-194376 affected Cisco
CVRFPID-194377 affected Cisco
CVRFPID-194378 affected Cisco
CVRFPID-194379 affected Cisco
CVRFPID-194380 affected Cisco
CVRFPID-200677 affected Cisco
CVRFPID-200678 affected Cisco
CVRFPID-200772 affected Cisco
CVRFPID-202724 affected Cisco
CVRFPID-202725 affected Cisco
CVRFPID-202728 affected Cisco
CVRFPID-207941 affected Cisco
CVRFPID-208536 affected Cisco
CVRFPID-210367 affected Cisco
CVRFPID-210368 affected Cisco
CVRFPID-210976 affected Cisco
CVRFPID-210977 affected Cisco
CVRFPID-210978 affected Cisco
CVRFPID-210979 affected Cisco
CVRFPID-210980 affected Cisco
CVRFPID-210981 affected Cisco
CVRFPID-211322 affected Cisco
CVRFPID-222773 affected Cisco
CVRFPID-223146 affected Cisco
CVRFPID-230322 affected Cisco
CVRFPID-230394 affected Cisco
CVRFPID-230395 affected Cisco
CVRFPID-230396 affected Cisco
CVRFPID-230397 affected Cisco
CVRFPID-230403 affected Cisco
CVRFPID-230404 affected Cisco
CVRFPID-230405 affected Cisco
CVRFPID-230406 affected Cisco
CVRFPID-230407 affected Cisco
CVRFPID-230408 affected Cisco
CVRFPID-230409 affected Cisco
CVRFPID-230410 affected Cisco
CVRFPID-230411 affected Cisco
CVRFPID-230412 affected Cisco
CVRFPID-230413 affected Cisco
CVRFPID-230842 affected Cisco
CVRFPID-230843 affected Cisco
CVRFPID-230844 affected Cisco
CVRFPID-230845 affected Cisco
CVRFPID-230846 affected Cisco
CVRFPID-230847 affected Cisco
CVRFPID-230848 affected Cisco
CVRFPID-230849 affected Cisco
CVRFPID-230850 affected Cisco
CVRFPID-230851 affected Cisco
CVRFPID-230852 affected Cisco
CVRFPID-230853 affected Cisco
CVRFPID-230854 affected Cisco
CVRFPID-230855 affected Cisco
CVRFPID-230909 affected Cisco
CVRFPID-234402 affected Cisco
CVRFPID-247201 affected Cisco
CVRFPID-247203 affected Cisco
CVRFPID-247204 affected Cisco
CVRFPID-247207 affected Cisco
CVRFPID-247208 affected Cisco
CVRFPID-247209 affected Cisco
CVRFPID-247211 affected Cisco
CVRFPID-247212 affected Cisco
CVRFPID-247213 affected Cisco
CVRFPID-247214 affected Cisco
CVRFPID-247215 affected Cisco
CVRFPID-247216 affected Cisco
CVRFPID-247217 affected Cisco
CVRFPID-248129 affected Cisco
CVRFPID-248130 affected Cisco
CVRFPID-248131 affected Cisco
CVRFPID-259638 affected Cisco
Upstream advisory

cisco-sa-20190417-wlc-gui

Cisco PSIRTMEDIUM2019-04-17

Cisco Wireless LAN Controller Software GUI Configuration Denial of Service Vulnerabilities

CVEs:CVE-2018-0248

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-109058 affected Cisco
CVRFPID-109059 affected Cisco
CVRFPID-109060 affected Cisco
CVRFPID-109061 affected Cisco
CVRFPID-114900 affected Cisco
CVRFPID-114902 affected Cisco
CVRFPID-114903 affected Cisco
CVRFPID-114904 affected Cisco
CVRFPID-114905 affected Cisco
CVRFPID-188675 affected Cisco
CVRFPID-188676 affected Cisco
CVRFPID-194376 affected Cisco
CVRFPID-194377 affected Cisco
CVRFPID-194378 affected Cisco
CVRFPID-194379 affected Cisco
CVRFPID-194380 affected Cisco
CVRFPID-200677 affected Cisco
CVRFPID-200678 affected Cisco
CVRFPID-200772 affected Cisco
CVRFPID-202724 affected Cisco
CVRFPID-202725 affected Cisco
CVRFPID-202728 affected Cisco
CVRFPID-207941 affected Cisco
CVRFPID-208536 affected Cisco
CVRFPID-210367 affected Cisco
CVRFPID-210368 affected Cisco
CVRFPID-210976 affected Cisco
CVRFPID-210977 affected Cisco
CVRFPID-210978 affected Cisco
CVRFPID-210979 affected Cisco
CVRFPID-210981 affected Cisco
CVRFPID-211322 affected Cisco
CVRFPID-222773 affected Cisco
CVRFPID-223146 affected Cisco
CVRFPID-230322 affected Cisco
CVRFPID-230394 affected Cisco
CVRFPID-230395 affected Cisco
CVRFPID-230396 affected Cisco
CVRFPID-230397 affected Cisco
CVRFPID-230403 affected Cisco
CVRFPID-230404 affected Cisco
CVRFPID-230405 affected Cisco
CVRFPID-230407 affected Cisco
CVRFPID-230408 affected Cisco
CVRFPID-230409 affected Cisco
CVRFPID-230410 affected Cisco
CVRFPID-230411 affected Cisco
CVRFPID-230412 affected Cisco
CVRFPID-230413 affected Cisco
CVRFPID-230842 affected Cisco
CVRFPID-230843 affected Cisco
CVRFPID-230844 affected Cisco
CVRFPID-230845 affected Cisco
CVRFPID-230846 affected Cisco
CVRFPID-230847 affected Cisco
CVRFPID-230848 affected Cisco
CVRFPID-230849 affected Cisco
CVRFPID-230850 affected Cisco
CVRFPID-230851 affected Cisco
CVRFPID-230852 affected Cisco
CVRFPID-230853 affected Cisco
CVRFPID-230854 affected Cisco
CVRFPID-230855 affected Cisco
CVRFPID-230909 affected Cisco
CVRFPID-234402 affected Cisco
CVRFPID-247201 affected Cisco
CVRFPID-247203 affected Cisco
CVRFPID-247204 affected Cisco
CVRFPID-247206 affected Cisco
CVRFPID-247207 affected Cisco
CVRFPID-247208 affected Cisco
CVRFPID-247211 affected Cisco
CVRFPID-247212 affected Cisco
CVRFPID-247213 affected Cisco
CVRFPID-247214 affected Cisco
CVRFPID-247215 affected Cisco
CVRFPID-247216 affected Cisco
CVRFPID-247217 affected Cisco
CVRFPID-248129 affected Cisco
CVRFPID-248130 affected Cisco
CVRFPID-248131 affected Cisco
CVRFPID-259638 affected Cisco
CVRFPID-7368 affected Cisco
Upstream advisory

cisco-sa-20190417-wlc-iapp

Cisco PSIRTMEDIUM2019-04-17

Cisco Wireless LAN Controller Software IAPP Message Handling Denial of Service Vulnerabilities

CVEs:CVE-2019-1799CVE-2019-1796CVE-2019-1800

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-202728 affected Cisco
CVRFPID-207941 affected Cisco
CVRFPID-210976 affected Cisco
CVRFPID-210977 affected Cisco
CVRFPID-210978 affected Cisco
CVRFPID-210979 affected Cisco
CVRFPID-210981 affected Cisco
CVRFPID-222773 affected Cisco
CVRFPID-223146 affected Cisco
CVRFPID-230322 affected Cisco
CVRFPID-230394 affected Cisco
CVRFPID-230395 affected Cisco
CVRFPID-230396 affected Cisco
CVRFPID-230397 affected Cisco
CVRFPID-230403 affected Cisco
CVRFPID-230404 affected Cisco
CVRFPID-230405 affected Cisco
CVRFPID-230407 affected Cisco
CVRFPID-230408 affected Cisco
CVRFPID-230409 affected Cisco
CVRFPID-230410 affected Cisco
CVRFPID-230411 affected Cisco
CVRFPID-230412 affected Cisco
CVRFPID-230413 affected Cisco
CVRFPID-230842 affected Cisco
CVRFPID-230843 affected Cisco
CVRFPID-230844 affected Cisco
CVRFPID-230845 affected Cisco
CVRFPID-230846 affected Cisco
CVRFPID-230847 affected Cisco
CVRFPID-234402 affected Cisco
CVRFPID-247201 affected Cisco
CVRFPID-247203 affected Cisco
CVRFPID-247204 affected Cisco
CVRFPID-247207 affected Cisco
CVRFPID-247208 affected Cisco
CVRFPID-247211 affected Cisco
CVRFPID-247212 affected Cisco
CVRFPID-247213 affected Cisco
CVRFPID-247214 affected Cisco
CVRFPID-247215 affected Cisco
CVRFPID-247216 affected Cisco
CVRFPID-247217 affected Cisco
CVRFPID-248129 affected Cisco
CVRFPID-248130 affected Cisco
CVRFPID-248131 affected Cisco
Upstream advisory

cisco-sa-20190404-rv-xss

Cisco PSIRTHIGH2019-04-04

Cisco Small Business RV320 and RV325 Routers Online Help Reflected Cross-Site Scripting Vulnerability

CVEs:CVE-2019-1827

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-183630 affected Cisco
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.