Skip to main content

Vendor/product archive

cisco / cloud_portal CVEs

Beta · best-effort

9 CVEs tagged to cisco / cloud_portal0 Critical, 0 High, 9 Medium, 0 Low, 0 Unrated.

CVE-2014-3352

Published Aug 30, 2014

Cisco Intelligent Automation for Cloud (aka Cisco Cloud Portal) 2008.3_SP9 and earlier does not properly consider whether a session is a problematic NULL session, which allows rem…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3351

Published Aug 29, 2014

Cisco Intelligent Automation for Cloud (aka Cisco Cloud Portal) does not properly consider whether a session is a problematic NULL session, which allows remote attackers to obtain…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3350

Published Aug 29, 2014

Cisco Intelligent Automation for Cloud (aka Cisco Cloud Portal) does not properly implement URL redirection, which allows remote authenticated users to obtain sensitive informatio…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3349

Published Aug 29, 2014

Cisco Intelligent Automation for Cloud (aka Cisco Cloud Portal) does not validate file types during the handling of file submission, which allows remote authenticated users to upl…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3298

Published Jul 2, 2014

Form Data Viewer in Cisco Intelligent Automation for Cloud in Cisco Cloud Portal places passwords in form data, which allows remote authenticated users to obtain sensitive informa…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3297

Published Jul 2, 2014

Cisco Intelligent Automation for Cloud in Cisco Cloud Portal does not properly restrict the content of MyServices action URLs, which allows remote authenticated users to obtain se…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0694

Published Mar 14, 2014

Intelligent Automation for Cloud (IAC) in Cisco Cloud Portal 9.4.1 and earlier includes a cryptographic key in binary files, which makes it easier for remote attackers to obtain c…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6708

Published Dec 10, 2013

Cisco Cloud Portal 9.4 allows remote attackers to read files of unspecified types via a direct request, aka Bug IDs CSCuj08426 and CSCui60889.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-1139

Published Feb 27, 2013

The nsAPI interface in Cisco Cloud Portal 9.1 SP1 and SP2, and 9.3 through 9.3.2, does not properly check privileges, which allows remote authenticated users to obtain sensitive i…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1