Cisco / Mobility Services Engine
13 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2021-44228 KEV | Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints | CRITICAL | 10.0 | Dec 10, 2021 |
| CVE-2018-0377 | A vulnerability in the Open Systems Gateway initiative (OSGi) interface of Cisco Policy Suite before 18.1.0 could allow an unauthenticated, remote attacker to… | CRITICAL | 9.8 | Jul 18, 2018 |
| CVE-2018-0376 | A vulnerability in the Policy Builder interface of Cisco Policy Suite before 18.2.0 could allow an unauthenticated, remote attacker to access the Policy Builde… | CRITICAL | 9.8 | Jul 18, 2018 |
| CVE-2018-0375 | A vulnerability in the Cluster Manager of Cisco Policy Suite before 18.2.0 could allow an unauthenticated, remote attacker to log in to an affected system usin… | CRITICAL | 9.8 | Jul 18, 2018 |
| CVE-2018-0374 | A vulnerability in the Policy Builder database of Cisco Policy Suite before 18.2.0 could allow an unauthenticated, remote attacker to connect directly to the P… | CRITICAL | 9.8 | Jul 18, 2018 |
| CVE-2018-0134 | A vulnerability in the RADIUS authentication module of Cisco Policy Suite could allow an unauthenticated, remote attacker to determine whether a subscriber use… | MEDIUM | 5.3 | Feb 8, 2018 |
| CVE-2018-0116 | A vulnerability in the RADIUS authentication module of Cisco Policy Suite could allow an unauthenticated, remote attacker to be authorized as a subscriber with… | HIGH | 7.2 | Feb 8, 2018 |
| CVE-2016-9197 | A vulnerability in the CLI command parser of the Cisco Mobility Express 2800 and 3800 Series Wireless LAN Controllers could allow an authenticated, local attac… | MEDIUM | 6.7 | Apr 7, 2017 |
| CVE-2015-6316 | The default configuration of sshd_config in Cisco Mobility Services Engine (MSE) through 8.0.120.7 allows logins by the oracle account, which makes it easier f… | MEDIUM | 6.5 | Nov 6, 2015 |
| CVE-2015-4282 | Cisco Mobility Services Engine (MSE) through 8.0.120.7 uses weak permissions for unspecified binary files, which allows local users to obtain root privileges b… | MEDIUM | 6.9 | Nov 6, 2015 |
| CVE-2015-4263 | The Control and Provisioning functionality in Cisco Mobility Services Engine (MSE) 10.0(0.1) allows remote authenticated users to obtain sensitive information… | MEDIUM | 4.0 | Jul 10, 2015 |
| CVE-2015-0673 | Cisco Mobility Services Engine (MSE) 8.0(110.0) allows remote authenticated users to discover the passwords of arbitrary users by (1) reading log files or (2)… | MEDIUM | 4.0 | Mar 26, 2015 |
| CVE-2013-3469 | Cisco Mobility Services Engine does not properly set up the Oracle SSL service, which allows remote attackers to obtain an unauthenticated session to the datab… | MEDIUM | 5.0 | Sep 4, 2013 |
Showing 1 to 13 of 13 CVEs