Known vulnerabilities in Elastic Services Controller

Software CPE: cpe:2.3:a:cisco_systems:elastic_services_controller:*:*:*:*:*:*:*:*
Total vulnerabilities: 18
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Elastic Services Controller Elastic Services Controller is affected by 18 known vulnerabilities: 3 high, 2 medium, 13 low Critical High Medium Low

Vulnerabilities (18)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU50064 - Resource exhaustion
CVE-2021-1312
CWE-400 Medium
No
No
5.3.0.102 20.01.2021 SB2021012721
#VU10696 - Permissions, Privileges, and Access Controls
CVE-2018-0121
CWE-264 Low
No
No
- 22.02.2018 SB2018022217
#VU10118 - Exposure of sensitive information to an unauthorized actor
CVE-2018-0106
CWE-200 Low
No
No
- 17.01.2018 SB2018011909
#VU7973 - Exposure of sensitive information to an unauthorized actor
CVE-2017-6772
CWE-200 Low
No
No
- 17.08.2017 SB2017081704
#VU7972 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2017-6776
CWE-79 Low
No
No
- 17.08.2017 SB2017081704
#VU7971 - Exposure of sensitive information to an unauthorized actor
CVE-2017-6777
CWE-200 Low
No
No
- 17.08.2017 SB2017081704
#VU7970 - Exposure of sensitive information to an unauthorized actor
CVE-2017-6786
CWE-200 Low
No
No
- 16.08.2017 SB2017081704
#VU7368 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2017-6712
CWE-78 High
No
No
- 06.07.2017 SB2017070609
#VU7367 - Credentials Management
CVE-2017-6713
CWE-255 Medium
No
No
- 06.07.2017 SB2017070609
#VU6998 - Exposure of sensitive information to an unauthorized actor
CVE-2017-6697
CWE-200 Low
No
No
- 09.06.2017 SB2017060901
#VU6997 - Exposure of sensitive information to an unauthorized actor
CVE-2017-6696
CWE-200 Low
No
No
- 09.06.2017 SB2017060901
#VU6996 - Command injection
CVE-2017-6682
CWE-77 High
No
No
- 09.06.2017 SB2017060901
#VU6995 - Command injection
CVE-2017-6683
CWE-77 High
No
No
- 09.06.2017 SB2017060901
#VU6994 - Use of Hard-coded Password
CVE-2017-6684
CWE-259 Low
No
No
- 09.06.2017 SB2017060901
#VU6993 - Use of Hard-coded Password
CVE-2017-6688
CWE-259 Low
No
No
- 09.06.2017 SB2017060901
#VU6992 - Use of Hard-coded Password
CVE-2017-6689
CWE-259 Low
No
No
- 09.06.2017 SB2017060901
#VU6991 - Exposure of sensitive information to an unauthorized actor
CVE-2017-6691
CWE-200 Low
No
No
- 09.06.2017 SB2017060901
#VU6990 - Exposure of sensitive information to an unauthorized actor
CVE-2017-6693
CWE-200 Low
No
No
- 09.06.2017 SB2017060901