NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 9970 | CVE-2011-3295 | The NETIO and IPV4_IO processes in Cisco IOS XR 3.8 through 4.1, as used in Cisco Carrier Routing System and other products, allow remote attackers to cause a denial of service (CPU consumption) via crafted network traffic, aka Bug ID CSCti59888. | 2 | 7.8 | High | 2017-01-07 | 2012-10-29 | View | |
| 9969 | CVE-2011-3294 | Cross-site scripting (XSS) vulnerability in the login page in the administrative interface on Cisco TelePresence Video Communication Servers (VCS) with software before X7.0 allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header, aka Bug ID CSCts80342. | 2 | 4.3 | Medium | 2017-01-07 | 2012-05-14 | View | |
| 9968 | CVE-2011-3293 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Solution Engine in Cisco Secure Access Control Server (ACS) 5.2 allow remote attackers to hijack the authentication of administrators for requests that insert cross-site scripting (XSS) sequences, aka Bug ID CSCtr78143. | 2 | 6.8 | Medium | 2017-01-07 | 2012-06-08 | View | |
| 9967 | CVE-2011-3290 | Cisco Identity Services Engine (ISE) before 1.0.4.MR2 has default Oracle database credentials, which allows remote attackers to modify settings or perform unspecified other administrative actions via unknown vectors, aka Bug ID CSCts59135. | 2 | 10 | High | 2017-01-07 | 2011-10-05 | View | |
| 9966 | CVE-2011-3289 | Cisco IOS 12.4 and 15.0 through 15.2 allows physically proximate attackers to bypass the No Service Password-Recovery feature and read the start-up configuration via unspecified vectors, aka Bug ID CSCtr97640. | 2 | 3.6 | Low | 2017-01-07 | 2012-10-29 | View |
Page 15679 of 17672, showing 5 records out of 88360 total, starting on record 78391, ending on 78395