VYPR

Small Business 220 Series Smart Plus Switches

Sign in to watch

by Cisco Systems, Inc.

CVEs (4)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2016-1473Cri0.649.80.03Sep 2, 2016Cisco Small Business 220 devices with firmware before 1.0.1.1 have a hardcoded SNMP community, which allows remote attackers to read or modify SNMP objects by leveraging knowledge of this community, aka Bug ID CSCuz76216.
CVE-2016-1470Hig0.578.80.00Sep 2, 2016Cross-site request forgery (CSRF) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuz76230.
CVE-2016-1472Hig0.497.50.01Sep 2, 2016The web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to cause a denial of service (interface outage) via a crafted HTTP request, aka Bug ID CSCuz76238.
CVE-2016-1471Med0.406.10.00Sep 2, 2016Cross-site scripting (XSS) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuz76232.