VendorsCiscoapplication_policy_infrastructure_controller_enterprise_module1.0.10
Vulnerabilities

Cisco Application Policy Infrastructure Controller Enterprise Module 1.0.10

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2016-1365
The Grapevine update process in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0 allows remote authenticated users to execute arbitrary commands as root via a crafted upgrade parameter, aka Bug ID CSCux15507.
Published 2016-08-18 · Modified
8.8EPSS 0.027
CVE-2015-6337
Cross-site scripting (XSS) vulnerability in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0.10 allows remote attackers to inject arbitrary web script or HTML via a crafted hostname in an SNMP response, aka Bug ID CSCuw47238.
Published 2016-01-26 · Modified
6.1EPSS 0.010