VYPR

EPC3928

by Cisco Systems, Inc.

CVEs (5)

  • CVE-2016-1337HigJul 3, 2016
    risk 0.56cvss 8.1epss 0.05

    Cisco EPC3928 devices allow remote attackers to obtain sensitive configuration and credential information by making requests during the early part of the boot process, related to a "Boot Information Disclosure" issue, aka Bug ID CSCux17178.

  • CVE-2016-1336HigJul 3, 2016
    risk 0.54cvss 7.5epss 0.09

    goform/Docsis_system on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a long LanguageSelect parameter, related to a "Gateway HTTP Corruption Denial of Service" issue, aka Bug ID CSCuy28100.

  • CVE-2016-1328HigJul 3, 2016
    risk 0.54cvss 7.5epss 0.09

    goform/WClientMACList on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a long h_sortWireless parameter, related to a "Gateway Client List Denial of Service" issue, aka Bug ID CSCux24948.

  • CVE-2015-6402Dec 14, 2015
    risk 0.06cvss epss 0.08

    Cross-site scripting (XSS) vulnerability in the management interface on Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allows remote attackers to inject arbitrary web script or HTML via an unspecified value, aka Bug ID CSCux24935.

  • CVE-2015-6401Dec 14, 2015
    risk 0.04cvss epss 0.08

    Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allow remote attackers to bypass an intended authentication requirement and execute unspecified administrative functions via a crafted HTTP request, aka Bug ID CSCux24941.