CVE List

Id CVE No. Status Description Phase Votes Comments Actions
100665  CVE-2017-3845  Candidate  A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. Affected Products: Cisco Prime Collaboration Assurance software versions 11.0, 11.1, and 11.5 are vulnerable. Cisco Prime Collaboration Assurance software versions prior to 11.0 are not vulnerable. More Information: CSCvc77783. Known Affected Releases: 11.5(0).  Assigned (20161221)  None (candidate not yet proposed)    View
100664  CVE-2017-3844  Candidate  A vulnerability in exporting functions of the user interface for Cisco Prime Collaboration Assurance could allow an authenticated, remote attacker to view file directory listings and download files. Affected Products: Cisco Prime Collaboration Assurance software versions 11.0, 11.1, and 11.5 are vulnerable. Cisco Prime Collaboration Assurance software versions prior to 11.0 are not vulnerable. More Information: CSCvc86238. Known Affected Releases: 11.5(0).  Assigned (20161221)  None (candidate not yet proposed)    View
100663  CVE-2017-3843  Candidate  A vulnerability in the file download functions for Cisco Prime Collaboration Assurance could allow an authenticated, remote attacker to download system files that should be restricted. More Information: CSCvc99446. Known Affected Releases: 11.5(0).  Assigned (20161221)  None (candidate not yet proposed)    View
100662  CVE-2017-3842  Candidate  A vulnerability in the web-based management interface of the Cisco Intrusion Prevention System Device Manager (IDM) could allow an unauthenticated, remote attacker to view sensitive information stored in certain HTML comments. More Information: CSCuh91455. Known Affected Releases: 7.2(1)V7.  Assigned (20161221)  None (candidate not yet proposed)    View
100661  CVE-2017-3841  Candidate  A vulnerability in the web interface of the Cisco Secure Access Control System (ACS) could allow an unauthenticated, remote attacker to disclose sensitive information. More Information: CSCvc04854. Known Affected Releases: 5.8(2.5).  Assigned (20161221)  None (candidate not yet proposed)    View

Page 811 of 20943, showing 5 records out of 104715 total, starting on record 4051, ending on 4055

Actions