cisco-sa-20190626-dcnm-bypass
Cisco Data Center Network Manager Authentication Bypass Vulnerability
CVEs:CVE-2019-1619
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-233075 | affected | Cisco | — | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).
Cisco Data Center Network Manager Authentication Bypass Vulnerability
CVEs:CVE-2019-1619
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-233075 | affected | Cisco | — | — |
Cisco Data Center Network Manager Arbitrary File Upload and Remote Code Execution Vulnerability
CVEs:CVE-2019-1620
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-233075 | affected | Cisco | — | — |
Cisco Data Center Network Manager Arbitrary File Download Vulnerability
CVEs:CVE-2019-1621
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-233075 | affected | Cisco | — | — |
Cisco Data Center Network Manager Information Disclosure Vulnerability
CVEs:CVE-2019-1622
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-233075 | affected | Cisco | — | — |
Cisco Integrated Management Controller CLI Command Injection Vulnerability
CVEs:CVE-2019-1879
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-203512 | affected | Cisco | — | — |
Cisco Meeting Server CLI Command Injection Vulnerability
CVEs:CVE-2019-1623
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-217166 | affected | Cisco | — | — |
Cisco Security Manager XML Entity Expansion Vulnerability
CVEs:CVE-2019-1903
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-79783 | affected | Cisco | — | — |
Cisco DNA Center Authentication Bypass Vulnerability
CVEs:CVE-2019-1848
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-233151 | affected | Cisco | — | — |
Cisco Enterprise Chat and Email Attachment Download Vulnerability
CVEs:CVE-2019-1877
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-256410 | affected | Cisco | — | — |
Cisco Email Security Appliance GZIP Content Filter Bypass Vulnerability
CVEs:CVE-2019-1905
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-189790 | affected | Cisco | — | — |
Cisco Integrated Management Controller Cross-Site Request Forgery Vulnerability
CVEs:CVE-2019-1632
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-203512 | affected | Cisco | — | — |
Cisco Integrated Management Controller Denial of Service Vulnerability
CVEs:CVE-2019-1628
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-203512 | affected | Cisco | — | — |
Cisco Integrated Management Controller Arbitrary File Write Vulnerability
CVEs:CVE-2019-1629
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-203512 | affected | Cisco | — | — |
Cisco Integrated Management Controller Denial of Service Vulnerability
CVEs:CVE-2019-1630
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-203512 | affected | Cisco | — | — |
Cisco Integrated Management Controller Information Disclosure Vulnerability
CVEs:CVE-2019-1627
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-203512 | affected | Cisco | — | — |
Cisco Integrated Management Controller Information Disclosure Vulnerability
CVEs:CVE-2019-1631
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-203512 | affected | Cisco | — | — |
Cisco Prime Infrastructure and Evolved Programmable Network Manager Virtual Domain Privilege Escalation Vulnerability
CVEs:CVE-2019-1906
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-190324 | affected | Cisco | — | — |
| CVRFPID-213688 | affected | Cisco | — | — |
Cisco Prime Service Catalog Cross-Site Request Forgery Vulnerability
CVEs:CVE-2019-1874
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-202401 | affected | Cisco | — | — |
Cisco Prime Service Catalog Cross-Site Scripting Vulnerability
CVEs:CVE-2019-1875
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-202401 | affected | Cisco | — | — |
Cisco RV110W, RV130W, and RV215W Routers Denial of Service Vulnerability
CVEs:CVE-2019-1897
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-212336 | affected | Cisco | — | — |
| CVRFPID-212341 | affected | Cisco | — | — |
| CVRFPID-212498 | affected | Cisco | — | — |
Cisco RV110W, RV130W, and RV215W Routers Unauthenticated syslog File Access Vulnerability
CVEs:CVE-2019-1898
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-212336 | affected | Cisco | — | — |
| CVRFPID-212341 | affected | Cisco | — | — |
| CVRFPID-212498 | affected | Cisco | — | — |
Cisco RV110W, RV130W, and RV215W Routers Information Disclosure Vulnerability
CVEs:CVE-2019-1899
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-212336 | affected | Cisco | — | — |
| CVRFPID-212341 | affected | Cisco | — | — |
| CVRFPID-212498 | affected | Cisco | — | — |
Cisco RV110W, RV130W, and RV215W Routers Management Interface Denial of Service Vulnerability
CVEs:CVE-2019-1843
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-212336 | affected | Cisco | — | — |
| CVRFPID-212341 | affected | Cisco | — | — |
| CVRFPID-212498 | affected | Cisco | — | — |
Cisco SD-WAN Solution Command Injection Vulnerability
CVEs:CVE-2019-1624
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-238692 | affected | Cisco | — | — |
Cisco SD-WAN Solution Privilege Escalation Vulnerability
CVEs:CVE-2019-1625
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-238692 | affected | Cisco | — | — |
Cisco SD-WAN Solution Privilege Escalation Vulnerability
CVEs:CVE-2019-1626
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-238692 | affected | Cisco | — | — |
Cisco StarOS Denial of Service Vulnerability
CVEs:CVE-2019-1869
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-193199 | affected | Cisco | — | — |
Cisco TelePresence Endpoint Command Shell Injection Vulnerability
CVEs:CVE-2019-1878
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-192563 | affected | Cisco | — | — |
| CVRFPID-222445 | affected | Cisco | — | — |
Cisco Wide Area Application Services Software HTTPS Proxy Authentication Bypass Vulnerability
CVEs:CVE-2019-1876
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-7367 | affected | Cisco | — | — |
Cisco IOS XE Software Web UI Cross-Site Request Forgery Vulnerability
CVEs:CVE-2019-1904
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-212436 | affected | Cisco | — | — |
| CVRFPID-213100 | affected | Cisco | — | — |
| CVRFPID-213809 | affected | Cisco | — | — |
| CVRFPID-213960 | affected | Cisco | — | — |
| CVRFPID-214993 | affected | Cisco | — | — |
| CVRFPID-217253 | affected | Cisco | — | — |
| CVRFPID-217255 | affected | Cisco | — | — |
| CVRFPID-217256 | affected | Cisco | — | — |
| CVRFPID-220802 | affected | Cisco | — | — |
| CVRFPID-222711 | affected | Cisco | — | — |
| CVRFPID-229124 | affected | Cisco | — | — |
| CVRFPID-231187 | affected | Cisco | — | — |
| CVRFPID-231667 | affected | Cisco | — | — |
| CVRFPID-239264 | affected | Cisco | — | — |
| CVRFPID-251165 | affected | Cisco | — | — |
Cisco Unified Communications Manager IM&P Service, Cisco TelePresence VCS, and Cisco Expressway Series Denial of Service Vulnerability
CVEs:CVE-2019-1845
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-112250 | affected | Cisco | — | — |
| CVRFPID-189784 | affected | Cisco | — | — |
| CVRFPID-202683 | affected | Cisco | — | — |
| CVRFPID-209614 | affected | Cisco | — | — |
Cisco Enterprise Chat and Email Cross-Site Scripting Vulnerability
CVEs:CVE-2019-1870
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-256410 | affected | Cisco | — | — |
Cisco Industrial Network Director Cross-Site Request Forgery Vulnerability
CVEs:CVE-2019-1881
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-227667 | affected | Cisco | — | — |
Cisco Industrial Network Director Remote Code Execution Vulnerability
CVEs:CVE-2019-1861
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-227667 | affected | Cisco | — | — |
Cisco Industrial Network Director Stored Cross-Site Scripting Vulnerability
CVEs:CVE-2019-1882
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-227667 | affected | Cisco | — | — |
Cisco IOS XR Software Secure Shell Authentication Vulnerability
CVEs:CVE-2019-1842
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-5834 | affected | Cisco | — | — |
Cisco Unified Computing System BIOS Signature Bypass Vulnerability
CVEs:CVE-2019-1880
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-112776 | affected | Cisco | — | — |
Cisco TelePresence Video Communication Server and Cisco Expressway Series Server-Side Request Forgery Vulnerability
CVEs:CVE-2019-1872
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-112250 | affected | Cisco | — | — |
| CVRFPID-209614 | affected | Cisco | — | — |
Cisco Webex Meetings Server Information Disclosure Vulnerability
CVEs:CVE-2019-1868
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-190702 | affected | Cisco | — | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.