Skip to main content

Vendor/product archive

cisco / prime_collaboration_assurance CVEs

Beta · best-effort

20 CVEs tagged to cisco / prime_collaboration_assurance3 Critical, 6 High, 11 Medium, 0 Low, 0 Unrated.

CVE-2019-1856

Published May 3, 2019

A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance (PCA) could allow an unauthenticated, remote attacker to conduct a cross-site scriptin…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-1662

Published Feb 21, 2019

A vulnerability in the Quality of Voice Reporting (QOVR) service of Cisco Prime Collaboration Assurance (PCA) Software could allow an unauthenticated, remote attacker to access th…

CVSS 8.2 · High
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2018-15438

Published Oct 17, 2018

A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance could allow an unauthenticated, remote attacker to conduct a cross-site request forger…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-0458

Published Oct 5, 2018

A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-6659

Published Jun 13, 2017

A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance could allow an unauthenticated, remote attacker to conduct a cross-site request forger…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-3845

Published Feb 22, 2017

A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-3844

Published Feb 22, 2017

A vulnerability in exporting functions of the user interface for Cisco Prime Collaboration Assurance could allow an authenticated, remote attacker to view file directory listings…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-3843

Published Feb 22, 2017

A vulnerability in the file download functions for Cisco Prime Collaboration Assurance could allow an authenticated, remote attacker to download system files that should be restri…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9200

Published Dec 14, 2016

A vulnerability in the web framework code of Cisco Prime Collaboration Assurance could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack aga…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-1392

Published May 5, 2016

Open redirect vulnerability in Cisco Prime Collaboration Assurance Software 10.5 through 11.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2015-6389

Published Dec 13, 2015

Cisco Prime Collaboration Assurance before 11.0 has a hardcoded cmuser account, which allows remote attackers to obtain access by establishing an SSH session and leveraging knowle…

CVSS 9.0 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2015-6330

Published Nov 18, 2015

Cross-site request forgery (CSRF) vulnerability in Cisco Prime Collaboration Assurance 10.5(1) and 10.6 allows remote attackers to hijack the authentication of arbitrary users, ak…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-6328

Published Oct 13, 2015

The web framework in Cisco Prime Collaboration Assurance (PCA) 10.5(1) allows remote authenticated users to bypass intended access restrictions and read arbitrary files via a craf…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-6331

Published Oct 12, 2015

SQL injection vulnerability in the web framework in Cisco Prime Collaboration Assurance 10.5(1) allows remote authenticated users to execute arbitrary SQL commands via unspecified…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-4306

Published Sep 20, 2015

The web framework in Cisco Prime Collaboration Assurance before 10.5.1.53684-1 allows remote authenticated users to bypass intended login-session read restrictions, and impersonat…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-4305

Published Sep 20, 2015

The web framework in Cisco Prime Collaboration Assurance before 10.5.1.53684-1 allows remote authenticated users to bypass intended system-database read restrictions, and discover…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-4304

Published Sep 20, 2015

The web framework in Cisco Prime Collaboration Assurance before 10.5.1.53684-1 allows remote authenticated users to bypass intended access restrictions, and create administrative…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-20 of 20 CVEsPage 1 of 1