cbcvebase.

Cisco Emergency Responder vulnerabilities

25 known vulnerabilities affecting cisco/emergency_responder.

Total CVEs
25
CISA KEV
1
actively exploited
Public exploits
2
Exploited in wild
1
Severity breakdown
CRITICAL4HIGH5MEDIUM16

Vulnerabilities

Page 2 of 2
CVE-2004-1759P4MEDIUMCVSS 5.0v1.12004-01-21
CVE-2004-1759 [MEDIUM] CWE-399 CVE-2004-1759: Cisco voice products, when running the IBM Director Agent on IBM servers before OS 2000.2.6, allows Cisco voice products, when running the IBM Director Agent on IBM servers before OS 2000.2.6, allows remote attackers to cause a denial of service (CPU consumption) via arbitrary packets to TCP port 14247, as demonstrated using port scanning.
nvd
CVE-2014-2116P4MEDIUMCVSS 4.3≤ 8.62014-04-04
CVE-2014-2116 [MEDIUM] CWE-20 CVE-2014-2116: Cisco Emergency Responder (ER) 8.6 and earlier allows remote attackers to inject web pages and modif Cisco Emergency Responder (ER) 8.6 and earlier allows remote attackers to inject web pages and modify dynamic content via unspecified parameters, aka Bug ID CSCun37882.
nvd
CVE-2014-2114P4MEDIUMCVSS 4.3≤ 8.62014-04-04
CVE-2014-2114 [MEDIUM] CWE-79 CVE-2014-2114: Cross-site scripting (XSS) vulnerability in UserServlet in Cisco Emergency Responder (ER) 8.6 and ea Cross-site scripting (XSS) vulnerability in UserServlet in Cisco Emergency Responder (ER) 8.6 and earlier allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCun24384.
nvd
CVE-2015-6400P4MEDIUMCVSS 4.3v10.5\(1a\)2015-12-13
CVE-2015-6400 [MEDIUM] CWE-79 CVE-2015-6400: Multiple cross-site scripting (XSS) vulnerabilities in Cisco Emergency Responder 10.5(1a) allow remo Multiple cross-site scripting (XSS) vulnerabilities in Cisco Emergency Responder 10.5(1a) allow remote attackers to inject arbitrary web script or HTML via unspecified fields, aka Bug ID CSCuv25547.
nvd
CVE-2014-2117P4MEDIUMCVSS 4.3≤ 8.62014-04-04
CVE-2014-2117 [MEDIUM] CWE-20 CVE-2014-2117: Multiple open redirect vulnerabilities in Cisco Emergency Responder (ER) 8.6 and earlier allow remot Multiple open redirect vulnerabilities in Cisco Emergency Responder (ER) 8.6 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified parameters, aka Bug ID CSCun37909.
nvd
Cisco Emergency Responder vulnerabilities | cvebase