Skip to main content

Vendor/product archive

cisco / web_security_appliance CVEs

Beta · best-effort

73 CVEs tagged to cisco / web_security_appliance4 Critical, 29 High, 40 Medium, 0 Low, 0 Unrated.

CVE-2022-20784

Published Apr 6, 2022

A vulnerability in the Web-Based Reputation Score (WBRS) engine of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-1359

Published Jul 8, 2021

A vulnerability in the configuration management of Cisco AsyncOS for Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to perform command injection…

CVSS 6.3 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2021-1490

Published May 6, 2021

A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to conduct a cross-si…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-15969

Published Sep 23, 2020

A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) a…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-15956

Published Nov 26, 2019

A vulnerability in the web management interface of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to perform an unauth…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2019-1884

Published Jul 4, 2019

A vulnerability in the web proxy functionality of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to cause a denial of…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2019-1817

Published May 3, 2019

A vulnerability in the web proxy functionality of Cisco AsyncOS Software for Cisco Web Security Appliance could allow an unauthenticated, remote attacker to cause a denial of serv…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-1816

Published May 3, 2019

A vulnerability in the log subscription subsystem of the Cisco Web Security Appliance (WSA) could allow an authenticated, local attacker to perform command injection and elevate p…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-1672

Published Feb 8, 2019

A vulnerability in the Decryption Policy Default Action functionality of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to bypass a configu…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-0428

Published Aug 15, 2018

A vulnerability in the account management subsystem of Cisco Web Security Appliance (WSA) could allow an authenticated, local attacker to elevate privileges to root. The attacker…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-0410

Published Aug 15, 2018

A vulnerability in the web proxy functionality of Cisco AsyncOS Software for Cisco Web Security Appliances could allow an unauthenticated, remote attacker to exhaust system memory…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2018-0406

Published Aug 1, 2018

A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to conduct a reflected or Document Obje…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 73 CVEsPage 1 of 3