Skip to main content

Vendor/product archive

cisco / security_manager CVEs

Beta · best-effort

30 CVEs tagged to cisco / security_manager4 Critical, 2 High, 24 Medium, 0 Low, 0 Unrated.

CVE-2022-20647

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20646

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20645

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20644

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20643

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20642

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20641

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20640

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20639

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20638

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20637

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20636

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-20635

Published Jan 14, 2022

Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks ag…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-27131

Published Nov 17, 2020

Multiple vulnerabilities in the Java deserialization function that is used by Cisco Security Manager could allow an unauthenticated, remote attacker to execute arbitrary commands…

CVSS 8.1 · High
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2020-27130

Published Nov 17, 2020

A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper validation…

CVSS 9.1 · Critical
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2020-27125

Published Nov 17, 2020

A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to access sensitive information on an affected system. The vulnerability is due to insuff…

CVSS 7.4 · High
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2019-12630

Published Oct 2, 2019

A vulnerability in the Java deserialization function used by Cisco Security Manager could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected de…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-1903

Published Jun 20, 2019

A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to access sensitive information or cause a denial of service (DoS) condition. The vulnera…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-0223

Published Mar 8, 2018

A vulnerability in DesktopServlet in the web-based management interface of Cisco Security Manager could allow an unauthenticated, remote attacker to conduct a reflected cross-site…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-0727

Published May 15, 2015

Cross-site scripting (XSS) vulnerability in the HTTP module in Cisco Security Manager (CSM) 4.7(0)SP1(1) allows remote attackers to inject arbitrary web script or HTML via a craft…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3326

Published Jul 26, 2014

SQL injection vulnerability in the web framework in Cisco Security Manager 4.5 and 4.6 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors,…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3267

Published May 26, 2014

Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Security Manager 4.6 and earlier allows remote attackers to hijack the authentication of arbitrary us…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3266

Published May 26, 2014

Cross-site scripting (XSS) vulnerability in the web framework in Cisco Security Manager 4.6 and earlier allows remote attackers to inject arbitrary web script or HTML via an unspe…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3265

Published May 20, 2014

Cross-site scripting (XSS) vulnerability in the Auto Update Server (AUS) web framework in Cisco Security Manager 4.2 and earlier allows remote attackers to inject arbitrary web sc…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 30 CVEsPage 1 of 2