Known vulnerabilities in Cisco Wide Area Application Services
Vendor:
Cisco Systems, Inc
Software:
Cisco Wide Area Application Services
Software CPE:
cpe:2.3:a:cisco_systems:cisco_wide_area_application_services:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
12
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
6.4.5a
6.4.5c
6.4(3d)24
6.6(1.10)
6.4(5a)28
6.4(4.71)
6.4(3d)26
6.4(3e)1
6.4(3d)
6.4(1)
6.2(3e)31
6.4(1b)15
6.4(3.46)
6.2(3e)40
6.4(1b)9
6.4(1c)12
6.4(3.66)
6.2(3c)
6.2(3)
6.2(3b)
6.2(3a)
6.3(1)
6.2(1)
6.1(1)
5.3.5a
5.2 base
5.3.5b
5.3.1
5.3.3
5.2.1
5.3.5
5.1.1b
5.3.5c
5.1.1d
5.1.1a
5.1.1c
6.0(1)
5.3(.5)
5.3(.3)
5.1(.1d)
5.1(.1c)
5.1(.1b)
5.1(.1)
5.1(.1a)
5.3
5.2(.1)
5.1(.1f)
5.1(.1e)
5.3(.1)
5.3(.5a)
5.0.1
5.2
4.4.1
4.0.5
4.0.1
4.2.1
4.0.3
4.4.7
4.0.27
5.0.3
4.0.23
4.0.25
4.2.3
4.4.5
4.4.3
4.0.19
4.0.17
4.0.11
4.0.13
4.3.1
4.0.21
4.3.3
5.1.1
4.3.5
4.1.3
4.1.1
4.1.7
4.1.5
5.0
4.4
5.1
4.0.7
4.0.9
Vulnerabilities (12)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU52905 - CVE-2021-1438 |
Low | 6.4.5c | 06.05.2021 |
SB2021050611 |
|||
| #VU45809 - Use of Hard-coded Credentials CVE-2020-3446 |
CWE-798 | High | 6.4.3d 24, 6.4.3d 26, 6.4.3e 1, 6.4.4.71, 6.4.5a 28, 6.6.1.10 | 20.08.2020 |
SB2020082016 |
||
| #VU13222 - Use of Hard-coded Credentials CVE-2018-0329 |
CWE-798 | Low | 6.2.3e 31, 6.4.1b 15, 6.4.3.46 | 07.06.2018 |
SB2018060714 |
||
| #VU13221 - Memory corruption CVE-2018-0352 |
CWE-119 | Low | 6.2.3e 40, 6.4.1b 9, 6.4.1c 12, 6.4.3.66 | 06.06.2018 |
SB2018060714 |
||
| #VU8705 - Improper input validation CVE-2017-12267 |
CWE-20 | Low | - | 05.10.2017 |
SB2017100506 |
||
| #VU8704 - Data Handling CVE-2017-12256 |
CWE-19 | Low | - | 05.10.2017 |
SB2017100506 |
||
| #VU8544 - Improper input validation CVE-2017-12250 |
CWE-20 | Low | - | 21.09.2017 |
SB2017092102 |
||
| #VU7340 - Improper input validation CVE-2017-6727 |
CWE-20 | Low | - | 06.07.2017 |
SB2017070602 |
||
| #VU7339 - Exposure of sensitive information to an unauthorized actor CVE-2017-6730 |
CWE-200 | Low | - | 06.07.2017 |
SB2017070602 |
||
| #VU7183 - Improper input validation CVE-2017-6721 |
CWE-20 | Low | - | 23.06.2017 |
SB2017062303 |
||
| #VU6399 - Resource Management Errors CVE-2017-6628 |
CWE-399 | Low | - | 03.05.2017 |
SB2017050303 |
||
| #VU936 - Resource Management Errors CVE-2016-6437 |
CWE-399 | Low | - | 12.10.2016 |
SB2016101205 |