NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 27339 | CVE-2015-6404 | Cisco Hosted Collaboration Mediation Fulfillment 10.6(3) does not use RBAC, which allows remote authenticated users to obtain sensitive credential information by leveraging admin access and making SOAP API requests, aka Bug ID CSCuw84374. | 2 | 4 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 27338 | CVE-2015-6403 | The TFTP implementation on Cisco Small Business SPA30x, SPA50x, SPA51x phones 7.5.7 improperly validates firmware-image file integrity, which allows local users to load a Trojan horse image by leveraging shell access, aka Bug ID CSCut67400. | 2 | 7.2 | High | 2017-01-19 | 2016-12-07 | View | |
| 27337 | CVE-2015-6402 | Cross-site scripting (XSS) vulnerability in the management interface on Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allows remote attackers to inject arbitrary web script or HTML via an unspecified value, aka Bug ID CSCux24935. | 2 | 4.3 | Medium | 2017-01-19 | 2015-12-14 | View | |
| 27336 | CVE-2015-6401 | Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allow remote attackers to bypass an intended authentication requirement and execute unspecified administrative functions via a crafted HTTP request, aka Bug ID CSCux24941. | 2 | 7.5 | High | 2017-01-19 | 2015-12-14 | View | |
| 27335 | CVE-2015-6400 | Multiple cross-site scripting (XSS) vulnerabilities in Cisco Emergency Responder 10.5(1a) allow remote attackers to inject arbitrary web script or HTML via unspecified fields, aka Bug ID CSCuv25547. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 2885 of 17672, showing 5 records out of 88360 total, starting on record 14421, ending on 14425