Cisco Sf250-08 Firmware vulnerabilities
3 known vulnerabilities affecting cisco/sf250-08_firmware.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2021-34739HIGHCVSS 8.1≤ 2.52021-11-04
CVE-2021-34739 [HIGH] CWE-613 CVE-2021-34739: A vulnerability in the web-based management interface of multiple Cisco Small Business Series Switch
A vulnerability in the web-based management interface of multiple Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to replay valid user session credentials and gain unauthorized access to the web-based management interface of an affected device. This vulnerability is due to insufficient expiration of session credent
nvd
CVE-2019-12636HIGHCVSS 8.8fixed in 2.5.0.902019-10-16
CVE-2019-12636 [HIGH] CWE-352 CVE-2019-12636: A vulnerability in the web-based management interface of Cisco Small Business Smart and Managed Swit
A vulnerability in the web-based management interface of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web-based management interface on an affected device. An
nvd
CVE-2019-12718MEDIUMCVSS 6.1fixed in 2.5.0.902019-10-16
CVE-2019-12718 [MEDIUM] CWE-79 CVE-2019-12718: A vulnerability in the web-based interface of Cisco Small Business Smart and Managed Switches could
A vulnerability in the web-based interface of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based interface. The vulnerability is due to insufficient validation of user-supplied input by the web-based interface of the affected dev
nvd