Wednesday, 23 August 2006 Certain versions of the software for the Cisco PIX 500 Series Security Appliances, the Cisco ASA 5500 Series Adaptive Security Appliances (ASA), and the Firewall Services Module (FWSM) are affected by a software bug that may cause the EXEC password, passwords of locally defined... |
|
Read more...
|
|
Wednesday, 19 July 2006 Cisco Security Monitoring, Analysis and Response System (CS-MARS) software contains vulnerabilities related to third-party software and the command line interface (CLI). - CS-MARS ships with an Oracle database. The database contains several default Oracle accounts which have... |
|
Read more...
|
|
Thursday, 13 July 2006 Please refer to vendor's website link for further details. |
|
Read more...
|
|
Wednesday, 12 July 2006 Cisco Intrusion Prevention System (IPS) software version 5.1 is vulnerable to a denial of service condition caused by a malformed packet, which may result in an IPS device becoming inaccessible remotely or via the console and fail to process packets. A power reset is required to... |
|
Read more...
|
|
Wednesday, 12 July 2006 Cisco Unified CallManager (CUCM) 5.0 has Command Line Interface (CLI) and Session Initiation Protocol (SIP) related vulnerabilities. There are potential privilege escalation vulnerabilities in the CLI which may allow an authenticated administrator to access the base operating... |
|
Read more...
|
|
Wednesday, 12 July 2006 The default Cisco IOS configuration shipped with the Cisco Router Web Setup (CRWS) application allows the execution of commands at privilege level 15 through the Cisco IOS HTTP (Hypertext Transfer Protocol) server web interface without requiring authentication credentials.... |
|
Read more...
|
|
Wednesday, 28 June 2006 The Cisco web-browser interface for Cisco access points contains a vulnerability that could, under certain circumstances, remove the default security configuration from the managed access point and allow administrative access without validation of administrative user... |
|
Read more...
|
|
Wednesday, 28 June 2006 Cisco Wireless Control System (WCS) contains multiple vulnerabilities which may allow a remote user to access sensitive configuration information about access points managed by WCS, read from and write to arbitrary files on a WCS system, log in to a WCS system with a default... |
|
Read more...
|
|
Wednesday, 24 May 2006 The Cisco VPN Client for Windows is affected by a local privilege escalation vulnerability that allows non-privileged users to gain administrative privileges. |
|
Read more...
|
|
Thursday, 11 May 2006 Cisco Application Velocity System's (AVS) default configuration allows transparent relay of TCP connections to any reachable destination TCP port if the receiving TCP service can process requests embedded in a HTTP POST method message. This issue does not require a software... |
|
Read more...
|
|
Tuesday, 02 May 2006 Cisco Unity Express (CUE) contains a vulnerability that might allow an authenticated user to change the password for another user by using the HTTP management interface, if the password for the user being modified is marked as expired. This can result in a privilege escalation... |
|
Read more...
|
|
Wednesday, 19 April 2006 Two vulnerabilities exist in the WLSE appliance that may allow an attacker to gain complete control of the device or to obtain access to the underlying operating system. |
|
Read more...
|
|
Wednesday, 19 April 2006 Multiple Multi Protocol Label Switching (MPLS) related vulnerabilities exist on Cisco IOS. XR. Only systems that are running Cisco IOS XR and configured for MPLS are affected by these vulnerabilities. |
|
Read more...
|
|
Thursday, 06 April 2006 Cisco CSS 11500 Series Content Services Switches configured for Hyper Text Transfer Protocol (HTTP) compression are vulnerable to a Denial of Service (DoS) attack when processing valid, but obsolete, or specially crafted HTTP request. |
|
Read more...
|
|
Thursday, 06 April 2006 Multiple vulnerabilities exist in the Cisco Optical Networking System (ONS) 15310 Multi-service Provisioning Platforms (MSPP), ONS 15327 MSPP, ONS 15454 MSPP, ONS 15454 Multi-service Transport Platform (MSTP) and the ONS 15600 MSPP. These vulnerabilities will affect Optical... |
|
Read more...
|
|