Vulnerabilities (CVE)

Filtered by vendor Cisco Subscribe
Filtered by product Small Business 220 Series Smart Plus Switches
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-1473 1 Cisco 1 Small Business 220 Series Smart Plus Switches 2024-02-04 10.0 HIGH 9.8 CRITICAL
Cisco Small Business 220 devices with firmware before 1.0.1.1 have a hardcoded SNMP community, which allows remote attackers to read or modify SNMP objects by leveraging knowledge of this community, aka Bug ID CSCuz76216.
CVE-2016-1472 1 Cisco 1 Small Business 220 Series Smart Plus Switches 2024-02-04 5.0 MEDIUM 7.5 HIGH
The web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to cause a denial of service (interface outage) via a crafted HTTP request, aka Bug ID CSCuz76238.
CVE-2016-1470 1 Cisco 1 Small Business 220 Series Smart Plus Switches 2024-02-04 6.8 MEDIUM 8.8 HIGH
Cross-site request forgery (CSRF) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuz76230.
CVE-2016-1471 1 Cisco 1 Small Business 220 Series Smart Plus Switches 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuz76232.