Cisco Elastic Services Controller vulnerabilities
2 known vulnerabilities affecting cisco/cisco_elastic_services_controller.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1
Vulnerabilities
Page 1 of 1
CVE-2019-1867P1CRITICALCVSS 10.0≥ unspecified, < 4.1.0.100≥ unspecified, < 4.2.0.74+2 more2019-05-10
CVE-2019-1867 [CRITICAL] CWE-287 CVE-2019-1867: A vulnerability in the REST API of Cisco Elastic Services Controller (ESC) could allow an unauthenti
A vulnerability in the REST API of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to bypass authentication on the REST API. The vulnerability is due to improper validation of API requests. An attacker could exploit this vulnerability by sending a crafted request to the REST API. A successful exploit could all
nvd
CVE-2021-1312P3HIGHCVSS 7.5vn/a2021-01-20
CVE-2021-1312 [HIGH] CWE-400 CVE-2021-1312: A vulnerability in the system resource management of Cisco Elastic Services Controller (ESC) could a
A vulnerability in the system resource management of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) to the health monitor API on an affected device. The vulnerability is due to inadequate provisioning of kernel parameters for the maximum number of TCP connections and SYN backlog
nvd