Cisco Prime Infrastructure vulnerabilities
83 known vulnerabilities affecting cisco/prime_infrastructure.
Total CVEs
83
CISA KEV
1
actively exploited
Public exploits
3
Exploited in wild
2
Severity breakdown
CRITICAL7HIGH15MEDIUM59LOW2
Vulnerabilities
Page 5 of 5
CVE-2016-1474P4MEDIUMCVSS 4.3v2.2\(2\)2016-08-08
CVE-2016-1474 [MEDIUM] CVE-2016-1474: Cisco Prime Infrastructure 2.2(2) does not properly restrict use of IFRAME elements, which makes it
Cisco Prime Infrastructure 2.2(2) does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCuw65846, a different vulnerability than CVE-2015-6434.
nvd
CVE-2015-4331P4LOWCVSS 3.5≤ 1.4.0.452015-08-22
CVE-2015-4331 [LOW] CWE-264 CVE-2015-4331: Cisco Prime Infrastructure (PI) 1.4(0.45) and earlier, when AAA authentication is used, allows remot
Cisco Prime Infrastructure (PI) 1.4(0.45) and earlier, when AAA authentication is used, allows remote authenticated users to bypass intended access restrictions via a username with a modified composition of lowercase and uppercase characters, aka Bug ID CSum59958.
nvd
CVE-2021-1306P4LOWCVSS 3.4fixed in 3.8.1v3.8.12021-05-22
CVE-2021-1306 [LOW] CWE-73 CVE-2021-1306: A vulnerability in the restricted shell of Cisco Evolved Programmable Network (EPN) Manager, Cisco I
A vulnerability in the restricted shell of Cisco Evolved Programmable Network (EPN) Manager, Cisco Identity Services Engine (ISE), and Cisco Prime Infrastructure could allow an authenticated, local attacker to identify directories and write arbitrary files to the file system. This vulnerability is due to improper validation of parameters that are sent to
nvd
← Previous5 / 5