Vulnerability index

Browse CVEs

14 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect Privilege AssignmentCWE-266 × clear
Crosswork Network Services Orchestrator HIGH 7.8
CVE-2024-20389

A vulnerability in the ConfD CLI and the Cisco Crosswork Network Services Orchestrator CLI could allow an authenticated, low-privileged, local attac…

Mitigation only
Fix from $1,950 2024-05-16
Ios Xr HIGH 7.8
CVE-2024-20320

A vulnerability in the SSH client feature of Cisco IOS XR Software for Cisco 8000 Series Routers and Cisco Network Convergence System (NCS) 540 Serie…

Mitigation only
Fix from $1,950 2024-03-13
Ios Xe MEDIUM 6.7
CVE-2022-20855

A vulnerability in the self-healing functionality of Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst Access Points could allow an…

Mitigation only
Fix from $1,600 2022-09-30
Identity Services Engine MEDIUM 6.5
CVE-2022-20819

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain…

Fix: 2.4.0.357 / 2.6.0.156+
Fix from $1,600 2022-06-15
Secure Firewall Threat Defense HIGH 8.8
CVE-2022-20759EPSS 29%

A vulnerability in the web services interface for remote access VPN features of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower …

Fix: 6.4.0.15 / 6.6.5.2+
Fix from $1,950 2022-05-03
Ios Xe HIGH 7.8
CVE-2022-20681

A vulnerability in the CLI of Cisco IOS XE Software for Cisco Catalyst 9000 Family Switches and Cisco Catalyst 9000 Family Wireless Controllers could…

Mitigation only
Fix from $1,950 2022-04-15
Identity Services Engine MEDIUM 6.5
CVE-2022-20782

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain…

Mitigation only
Fix from $1,600 2022-04-06
Anyconnect Secure Mobility Client HIGH 7.8
CVE-2021-40124

A vulnerability in the Network Access Manager (NAM) module of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local…

Fix: 4.10.03104+
Fix from $1,950 2021-11-04
Identity Services Engine MEDIUM 6.5
CVE-2021-40123

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker with admi…

Fix: after 2.6
Fix from $1,600 2021-10-21
Identity Services Engine HIGH 8.1
CVE-2021-1594

A vulnerability in the REST API of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform a command injectio…

Fix: 2.6.0+
Fix from $1,950 2021-10-06
Confd HIGH 7.8
CVE-2021-1572

A vulnerability in ConfD could allow an authenticated, local attacker to execute arbitrary commands at the level of the account under which ConfD is …

Fix: after 7.5.2
Fix from $1,950 2021-08-04
Identity Services Engine MEDIUM 6.5
CVE-2021-1412

Multiple vulnerabilities in the Admin portal of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain sensitiv…

Fix: 2.3.0+
Fix from $1,600 2021-02-17
Catalyst Center HIGH 8.8
CVE-2021-1303

A vulnerability in the user management roles of Cisco DNA Center could allow an authenticated, remote attacker to execute unauthorized commands on an…

Fix: 2.1.2.0+
Fix from $1,950 2021-01-20
Identity Services Engine MEDIUM 6.7
CVE-2020-27122

A vulnerability in the Microsoft Active Directory integration of Cisco Identity Services Engine (ISE) could allow an authenticated, local attacker to…

Fix: 3.0.0+
Fix from $1,600 2020-11-06