Known vulnerabilities in Cisco Network Convergence System 5000 Series
Vendor:
Cisco Systems, Inc
Software CPE:
cpe:2.3:h:cisco_systems:cisco_network_convergence_system_5000_series:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
12
Public exploits:
0
Known exploited (KEV):
1
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (12)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU87523 - NULL Pointer Dereference CVE-2024-20266 |
CWE-476 | Medium | - | 14.03.2024 |
SB2024031422 |
||
| #VU87520 - Improper Access Control CVE-2024-20315 |
CWE-284 | Medium | - | 14.03.2024 |
SB2024031418 |
||
| #VU87514 - Improper Access Control CVE-2024-20319 |
CWE-284 | Low | - | 14.03.2024 |
SB2024031425 |
||
| #VU87513 - Improper Privilege Management CVE-2024-20262 |
CWE-269 | Low | - | 14.03.2024 |
SB2024031426 |
||
| #VU51736 - Resource Management Errors CVE-2021-1394 |
CWE-399 | Medium | - | 26.03.2021 |
SB2021032615 |
||
| #VU50373 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-1370 |
CWE-78 | Low | 7.0.12.14i.BASE, 7.0.12.242i.BASE, 7.2.1.14s.BASE, 7.2.1.15i.BASE | 04.02.2021 |
SB2021020501 |
||
| #VU50379 - Improper Verification of Cryptographic Signature CVE-2021-1136 |
CWE-347 | Low | 7.0.12.23i.BASE, 7.0.13.2i.BASE, 7.2.1.21i.BASE | 04.02.2021 |
SB2021020506 |
||
| #VU50380 - Improper Verification of Cryptographic Signature CVE-2021-1244 |
CWE-347 | Low | 3, 6.7.2, 6.7.3, 7.0.14, 7.1.2, 7.1.25, 7.2.1, 7.2.2, 7.2.12 | 04.02.2021 |
SB2021020506 |
||
| #VU46252 - Permissions, Privileges, and Access Controls CVE-2020-3530 |
CWE-264 | Low | - | 03.09.2020 |
SB2020090311 |
||
| #VU25028 - Use of Externally-Controlled Format String CVE-2020-3118 |
CWE-134 | Low | 6.6.3 | 07.02.2020 |
SB2020020712 |
||
| #VU49026 - Integer overflow CVE-2020-3120 |
CWE-190 | Low | - | 05.02.2020 |
SB2020020539 |
||
| #VU777 - Permissions, Privileges, and Access Controls CVE-2016-6428 |
CWE-264 | Low | - | 06.10.2016 |
SB2016100608 |