cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2013-5563,https://securityvulnerability.io/vulnerability/CVE-2013-5563,,"Cross-site scripting (XSS) vulnerability in Query/NewQueryResult.jsp in Cisco Security Monitoring, Analysis and Response System (CS-MARS) allows remote attackers to inject arbitrary web script or HTML via the isnowLatency parameter, aka Bug ID CSCul16173.",Cisco,Security Monitoring Analysis And Response System,,,0.002050000010058284,false,,false,false,false,,,false,false,,2013-11-06T15:55:00.000Z,0 CVE-2013-1140,https://securityvulnerability.io/vulnerability/CVE-2013-1140,,"The XML parser in Cisco Security Monitoring, Analysis, and Response System (MARS) allows remote attackers to read arbitrary files via an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue, aka Bug ID CSCue55093.",Cisco,Security Monitoring Analysis And Response System,,,0.0026199999265372753,false,,false,false,false,,,false,false,,2013-03-06T13:10:00.000Z,0 CVE-2007-0397,https://securityvulnerability.io/vulnerability/CVE-2007-0397,,"The Cisco Security Monitoring, Analysis and Response System (CS-MARS) before 4.2.3 and Adaptive Security Device Manager (ASDM) before 5.2(2.54) do not validate the SSL/TLS certificates or SSH public keys when connecting to devices, which allows remote attackers to spoof those devices to obtain sensitive information or generate incorrect information.",Cisco,Security Monitoring Analysis And Response System,,,0.010979999788105488,false,,false,false,false,,,false,false,,2007-01-20T01:00:00.000Z,0 CVE-2006-3733,https://securityvulnerability.io/vulnerability/CVE-2006-3733,,"jmx-console/HtmlAdaptor in the jmx-console in the JBoss web application server, as shipped with Cisco Security Monitoring, Analysis and Response System (CS-MARS) before 4.2.1, allows remote attackers to gain privileges as the CS-MARS administrator and execute arbitrary Java code via an invokeOp action in the BSHDeployer jboss.scripts service name.",Cisco,Security Monitoring Analysis And Response System,,,0.05112000182271004,false,,false,false,false,,,false,false,,2006-07-21T14:03:00.000Z,0