CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93236  CVE-2016-6416  Candidate  The FTP service in Cisco AsyncOS on Email Security Appliance (ESA) devices 9.6.0-000 through 9.9.6-026, Web Security Appliance (WSA) devices 9.0.0-162 through 9.5.0-444, and Content Security Management Appliance (SMA) devices allows remote attackers to cause a denial of service via a flood of FTP traffic, aka Bug IDs CSCuz82907, CSCuz84330, and CSCuz86065.  Assigned (20160726)  None (candidate not yet proposed)    View
93237  CVE-2016-6417  Candidate  Cross-site request forgery (CSRF) vulnerability in Cisco FireSIGHT System Software 4.10.2 through 6.1.0 and Firepower Management Center allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCva21636.  Assigned (20160726)  None (candidate not yet proposed)    View
93238  CVE-2016-6418  Candidate  Cross-site scripting (XSS) vulnerability in Cisco Videoscape Distribution Suite Service Manager (VDS-SM) 3.0 through 3.4.0 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCva14552.  Assigned (20160726)  None (candidate not yet proposed)    View
93239  CVE-2016-6419  Candidate  SQL injection vulnerability in Cisco Firepower Management Center 4.10.3 through 5.4.0 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug ID CSCur25485.  Assigned (20160726)  None (candidate not yet proposed)    View
93240  CVE-2016-6420  Candidate  Cisco FireSIGHT System Software 4.10.3 through 5.4.0 in Firepower Management Center allows remote authenticated users to bypass authorization checks and gain privileges via a crafted HTTP request, aka Bug ID CSCur25467.  Assigned (20160726)  None (candidate not yet proposed)    View

Page 18648 of 20943, showing 5 records out of 104715 total, starting on record 93236, ending on 93240

Actions