cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2019-1717,https://securityvulnerability.io/vulnerability/CVE-2019-1717,Cisco Video Surveillance Manager Web-Based Management Interface Information Disclosure Vulnerability,"A vulnerability in the web-based management interface of Cisco Video Surveillance Manager could allow an unauthenticated, remote attacker to access sensitive information. The vulnerability is due to improper validation of parameters handled by the web-based management interface. An attacker could exploit this vulnerability by sending malicious requests to an affected component. A successful exploit could allow the attacker to download arbitrary files from the affected device, which could contain sensitive information.",Cisco,Cisco Video Surveillance Manager,7.5,HIGH,0.002739999908953905,false,,false,false,true,2024-08-04T19:16:06.000Z,,false,false,,2019-05-15T00:00:00.000Z,0 CVE-2018-15427,https://securityvulnerability.io/vulnerability/CVE-2018-15427,Cisco Video Surveillance Manager Appliance Default Password Vulnerability,"A vulnerability in Cisco Video Surveillance Manager (VSM) Software running on certain Cisco Connected Safety and Security Unified Computing System (UCS) platforms could allow an unauthenticated, remote attacker to log in to an affected system by using the root account, which has default, static user credentials. The vulnerability is due to the presence of undocumented, default, static user credentials for the root account of the affected software on certain systems. An attacker could exploit this vulnerability by using the account to log in to an affected system. A successful exploit could allow the attacker to log in to the affected system and execute arbitrary commands as the root user.",Cisco,Cisco Video Surveillance Manager,9.8,CRITICAL,0.004139999859035015,false,,false,false,false,,,false,false,,2018-10-05T14:29:00.000Z,0 CVE-2014-0674,https://securityvulnerability.io/vulnerability/CVE-2014-0674,,"Cisco Video Surveillance Operations Manager (VSOM) does not require authentication for MySQL database connections, which allows remote attackers to obtain sensitive information, modify data, or cause a denial of service by leveraging network connectivity from a client system with a crafted host name, aka Bug ID CSCud10992.",Cisco,Video Surveillance Operations Manager,,,0.01827000081539154,false,,false,false,false,,,false,false,,2014-01-24T02:00:00.000Z,0 CVE-2013-3417,https://securityvulnerability.io/vulnerability/CVE-2013-3417,,"The administrative web interface in Cisco Video Surveillance Operations Manager does not properly perform authentication, which allows remote attackers to watch video feeds via a crafted URL, aka Bug ID CSCtg72262.",Cisco,Video Surveillance Operations Manager,,,0.0035200000274926424,false,,false,false,false,,,false,false,,2013-09-30T17:09:00.000Z,0 CVE-2013-3430,https://securityvulnerability.io/vulnerability/CVE-2013-3430,,"Cisco Video Surveillance Manager (VSM) before 7.0.0 allows remote attackers to obtain sensitive configuration, archive, and log information via unspecified vectors, related to the Cisco_VSBWT (aka Broadware sample code) package, aka Bug ID CSCsv37288.",Cisco,Video Surveillance Manager,,,0.005789999850094318,false,,false,false,false,,,false,false,,2013-07-25T15:00:00.000Z,0 CVE-2013-3429,https://securityvulnerability.io/vulnerability/CVE-2013-3429,,"Multiple directory traversal vulnerabilities in Cisco Video Surveillance Manager (VSM) before 7.0.0 allow remote attackers to read system files via a crafted URL, related to the Cisco_VSBWT (aka Broadware sample code) package, aka Bug ID CSCsv37163.",Cisco,Video Surveillance Manager,,,0.00279999990016222,false,,false,false,false,,,false,false,,2013-07-25T15:00:00.000Z,0 CVE-2013-3431,https://securityvulnerability.io/vulnerability/CVE-2013-3431,,"Cisco Video Surveillance Manager (VSM) before 7.0.0 does not require authentication for access to VSMC monitoring pages, which allows remote attackers to obtain sensitive configuration, archive, and log information via unspecified vectors, related to the Cisco_VSBWT (aka Broadware sample code) package, aka Bug ID CSCsv40169.",Cisco,Video Surveillance Manager,,,0.0031799999997019768,false,,false,false,false,,,false,false,,2013-07-25T15:00:00.000Z,0 CVE-2013-3376,https://securityvulnerability.io/vulnerability/CVE-2013-3376,,"Open redirect vulnerability in the help page in Cisco Video Surveillance Operations Manager allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL, aka Bug ID CSCty74490.",Cisco,Video Surveillance Operations Manager,,,0.0013099999632686377,false,,false,false,false,,,false,false,,2013-06-14T13:07:00.000Z,0 CVE-2009-2045,https://securityvulnerability.io/vulnerability/CVE-2009-2045,,"The Cisco Video Surveillance Stream Manager firmware before 5.3, as used on Cisco Video Surveillance Services Platforms and Video Surveillance Integrated Services Platforms, allows remote attackers to cause a denial of service (reboot) via a malformed payload in a UDP packet to port 37000, related to the xvcrman process, aka Bug ID CSCsj47924.",Cisco,Video Surveillance Stream Manager,,,0.005630000028759241,false,,false,false,false,,,false,false,,2009-06-25T01:30:00.000Z,0