Vulnerability index

Browse CVEs

153 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Path TraversalCWE-22 × clear
Identity Services Engine Passive Identity Connector MEDIUM 5.5
CVE-2026-20146

A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attac…

Fix: 3.3.0+
Fix from $1,600 2026-07-15
Identity Services Engine CRITICAL 9.1
CVE-2026-20181

A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating syst…

Fix: 3.3.0+
Fix from $2,300 2026-06-17
Catalyst Sd Wan Manager MEDIUM 6.5
CVE-2026-20262 KEVEPSS 28%

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker to create a fi…

Fix: 20.9.9.2 / 20.12.7.2+
Fix from $1,600 2026-06-15
Identity Services Engine CRITICAL 9.9
CVE-2026-20180EPSS 6%

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying…

Fix: 3.2.0+
Fix from $2,300 2026-04-15
Nexus Dashboard HIGH 7.2
CVE-2025-20344

A vulnerability in the backup restore functionality of Cisco Nexus Dashboard could allow an authenticated, remote attacker to conduct a path traversa…

Fix: 4.1+
Fix from $1,950 2025-08-27
Unified Contact Center Express MEDIUM 6.7
CVE-2025-20277

A vulnerability in the web-based management interface of Cisco Unified CCX could allow an authenticated, local attacker to execute arbitrary code on …

Mitigation only
Fix from $1,600 2025-06-04
Thousandeyes Endpoint Agent MEDIUM 5.3
CVE-2025-20259

Multiple vulnerabilities in the update process of Cisco ThousandEyes Endpoint Agent for Windows could allow an authenticated, local attacker to delet…

Fix: 2.3.3+
Fix from $1,600 2025-06-04
Catalyst Sd Wan Manager MEDIUM 6.5
CVE-2025-20187

A vulnerability in the application data endpoints of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remo…

Mitigation only
Fix from $1,600 2025-05-07
Data Center Network Manager HIGH 8.1
CVE-2020-3538

A vulnerability in a certain REST API endpoint of Cisco Data Center Network Manager (DCNM) Software could allow an authenticated, remote attacke…

Fix: 11.4+
Fix from $1,950 2024-11-18
Catalyst Sd Wan Manager HIGH 8.4
CVE-2020-26071

A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to create or overwrite arbitrary files on an af…

Mitigation only
Fix from $1,950 2024-11-18
Identity Services Engine MEDIUM 5.5
CVE-2024-20532

A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read and delete arbitrary files on an affected device. To ex…

Fix: 3.1.0+
Fix from $1,600 2024-11-06
Identity Services Engine HIGH 7.2
CVE-2024-20528

A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to upload files to arbitrary locations on the underlying operat…

Fix: 3.1.0+
Fix from $1,950 2024-11-06
Identity Services Engine MEDIUM 5.5
CVE-2024-20527

A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read and delete arbitrary files on an affected device. To ex…

Fix: 3.1.0+
Fix from $1,600 2024-11-06
Identity Services Engine MEDIUM 5.5
CVE-2024-20529

A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read and delete arbitrary files on an affected device. To ex…

Fix: 3.1.0+
Fix from $1,600 2024-11-06
Firepower Management Center MEDIUM 6.5
CVE-2024-20379

A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center…

Mitigation only
Fix from $1,600 2024-10-23
Nexus Dashboard Fabric Controller HIGH 8.8
CVE-2024-20449

A vulnerability in Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, remote attacker with low privileges to execute arbitr…

Fix: after 12.2.2
Fix from $1,950 2024-10-02
Emergency Responder HIGH 8.8
CVE-2024-20352

A vulnerability in Cisco Emergency Responder could allow an authenticated, remote attacker to conduct a directory traversal attack, which could allow…

Fix: 12.5+
Fix from $1,950 2024-04-03
Nexus Dashboard Fabric Controller HIGH 7.5
CVE-2024-20348

A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauthenticated…

Mitigation only
Fix from $1,950 2024-04-03
Secure Firewall Management Center HIGH 8.8
CVE-2023-20220

Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remo…

Fix: after 7.3.1.1
Fix from $1,950 2023-11-01
Duo Device Health Application HIGH 7.1
CVE-2023-20229

A vulnerability in the CryptoService function of Cisco Duo Device Health Application for Windows could allow an authenticated, local attacker with lo…

Fix: 5.2.0+
Fix from $1,950 2023-08-16
Catalyst Sd Wan Manager MEDIUM 6.5
CVE-2020-26065

A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct path …

Mitigation only
Fix from $1,600 2023-08-04
Identity Services Engine MEDIUM 6.7
CVE-2023-20166

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to perform path traversal attacks on the under…

Mitigation only
Fix from $1,600 2023-05-18
Identity Services Engine MEDIUM 6.5
CVE-2023-20077

Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker …

Fix: after 3.1
Fix from $1,600 2023-05-18
Identity Services Engine MEDIUM 6.5
CVE-2023-20087

Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker …

Fix: after 3.1
Fix from $1,600 2023-05-18
Catalyst Sd Wan Manager MEDIUM 6.0
CVE-2023-20098

A vulnerability in the CLI of Cisco SDWAN vManage Software could allow an authenticated, local attacker to delete arbitrary files. This vulnerabil…

Fix: 20.9.1+
Fix from $1,600 2023-05-09
Prime Infrastructure MEDIUM 6.5
CVE-2023-20129

Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (EPNM) co…

Fix: 3.10.2 / 5.0.2.5+
Fix from $1,600 2023-04-05
Ios Xe MEDIUM 6.5
CVE-2023-20066

A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to perform a directory traversal and access reso…

Mitigation only
Fix from $1,600 2023-03-23
Identity Services Engine HIGH 8.8
CVE-2022-20962

A vulnerability in the Localdisk Management feature of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to make una…

Mitigation only
Fix from $1,950 2022-11-04
Telepresence Collaboration Endpoint HIGH 7.1
CVE-2022-20954

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an attacker to conduct path…

Fix: 10.19.1+
Fix from $1,950 2022-10-26
Telepresence Collaboration Endpoint HIGH 7.1
CVE-2022-20955

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an attacker to conduct path…

Fix: 10.19.1+
Fix from $1,950 2022-10-26