Vulnerability index

Browse CVEs

59 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Privilege ManagementCWE-269 × clear
Jabber CRITICAL 9.9
CVE-2020-27127

Multiple vulnerabilities in Cisco Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms could allow an attacker to execute arbitrary …

Mitigation only
Fix from $2,300 2020-12-11
Expressway MEDIUM 6.5
CVE-2020-3482

A vulnerability in the Traversal Using Relays around NAT (TURN) server component of Cisco Expressway software could allow an unauthenticated, remote …

Mitigation only
Fix from $1,600 2020-11-18
Iot Field Network Director HIGH 8.7
CVE-2020-26072

A vulnerability in the SOAP API of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to access and modify informat…

Fix: 4.6.1+
Fix from $1,950 2020-11-18
Sd Wan HIGH 7.8
CVE-2020-3593

A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating syste…

Fix: 20.1.2 / 20.3.1+
Fix from $1,950 2020-11-06
Sd Wan HIGH 7.8
CVE-2020-3594

A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating syste…

Fix: 20.1.2 / 20.3.2+
Fix from $1,950 2020-11-06
Sd Wan HIGH 7.8
CVE-2020-3595

A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root group on the underlying operating…

Fix: 20.1.2 / 20.3.2+
Fix from $1,950 2020-11-06
Sd Wan HIGH 7.8
CVE-2020-3600

A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating syste…

Fix: 20.1.2 / 20.3.2+
Fix from $1,950 2020-11-06
Identity Services Engine MEDIUM 6.7
CVE-2020-27122

A vulnerability in the Microsoft Active Directory integration of Cisco Identity Services Engine (ISE) could allow an authenticated, local attacker to…

Fix: 3.0.0+
Fix from $1,600 2020-11-06
Ios Xe HIGH 7.8
CVE-2020-3393

A vulnerability in the application-hosting subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to r…

Mitigation only
Fix from $1,950 2020-09-24
Ios Xe HIGH 7.2
CVE-2020-3396

A vulnerability in the file system on the pluggable USB 3.0 Solid State Drive (SSD) for Cisco IOS XE Software could allow an authenticated, physical …

Mitigation only
Fix from $1,950 2020-09-24
Ucs Director CRITICAL 9.8
CVE-2020-3243EPSS 88%

Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass auth…

Fix: after 3.7.3.0
Fix from $2,300 2020-04-15
Ucs Director CRITICAL 9.8
CVE-2020-3250EPSS 60%

Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass auth…

Fix: after 3.7.3.0
Fix from $2,300 2020-04-15
Sd Wan Firmware HIGH 7.8
CVE-2020-3265

A vulnerability in Cisco SD-WAN Solution software could allow an authenticated, local attacker to elevate privileges to root on the underlying operat…

Fix: 18.4.5 / 19.2.2+
Fix from $1,950 2020-03-19
Data Center Network Manager HIGH 8.8
CVE-2020-3112

A vulnerability in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to elevate privile…

Fix: 11.3+
Fix from $1,950 2020-02-19
Sd Wan Firmware HIGH 8.8
CVE-2020-3115

A vulnerability in the CLI of the Cisco SD-WAN Solution vManage software could allow an authenticated, local attacker to elevate privileges to root-l…

Mitigation only
Fix from $1,950 2020-01-26
Webex Teams HIGH 8.8
CVE-2019-1939

A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affec…

Fix: 3.0.12427.0+
Fix from $1,950 2019-09-05
Ios Xe HIGH 8.8
CVE-2019-1754

A vulnerability in the authorization subsystem of Cisco IOS XE Software could allow an authenticated but unprivileged (level 1), remote attacker to r…

Patch available
Fix from $1,950 2019-03-28
Umbrella Enterprise Roaming Client HIGH 7.8
CVE-2018-0437

A vulnerability in the Cisco Umbrella Enterprise Roaming Client (ERC) could allow an authenticated, local attacker to elevate privileges to Administr…

Fix: 2.1.118 / 4.6.1098+
Fix from $1,950 2018-10-05
Umbrella Enterprise Roaming Client HIGH 7.8
CVE-2018-0438

A vulnerability in the Cisco Umbrella Enterprise Roaming Client (ERC) could allow an authenticated, local attacker to elevate privileges to Administr…

Fix: 2.1.127+
Fix from $1,950 2018-10-05
Rv110w Firmware CRITICAL 9.8
CVE-2018-0425

A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, …

Fix: 1.0.3.44+
Fix from $2,300 2018-10-05
Webex Teams HIGH 8.7
CVE-2018-0436

A vulnerability in Cisco Webex Teams, formerly Cisco Spark, could allow an authenticated, remote attacker to view and modify data for an organization…

Fix: 10.6.0+
Fix from $1,950 2018-10-05
Web Security Appliance MEDIUM 6.7
CVE-2018-0428

A vulnerability in the account management subsystem of Cisco Web Security Appliance (WSA) could allow an authenticated, local attacker to elevate pri…

Mitigation only
Fix from $1,600 2018-08-15
Vbond Orchestrator HIGH 8.8
CVE-2018-0343

A vulnerability in the configuration and management service of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to execute arb…

Fix: 18.3.0+
Fix from $1,950 2018-07-18
Wireless Lan Controller Software MEDIUM 5.3
CVE-2018-0245

A vulnerability in the REST API of Cisco 5500 and 8500 Series Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker …

Mitigation only
Fix from $1,600 2018-05-02
Application Policy Infrastructure Controller HIGH 7.1
CVE-2017-6767

A vulnerability in Cisco Application Policy Infrastructure Controller (APIC) could allow an authenticated, remote attacker to gain higher privileges …

Mitigation only
Fix from $1,950 2017-08-17
Ios Xr HIGH 7.0
CVE-2017-6728

A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to execute arbitrary code at the root privilege leve…

Mitigation only
Fix from $1,950 2017-07-10
Prime Network MEDIUM 6.7
CVE-2017-6732

A vulnerability in the installation procedure for Cisco Prime Network Software could allow an authenticated, local attacker to elevate their privileg…

Mitigation only
Fix from $1,600 2017-07-10
Policy Suite HIGH 7.8
CVE-2017-6623

A vulnerability in a script file that is installed as part of the Cisco Policy Suite (CPS) Software distribution for the CPS appliance could allow an…

Mitigation only
Fix from $1,950 2017-05-18
iOS HIGH 7.2
CVE-2012-0384

Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS before 3.1.2S, 3.2.xS through 3.4.xS before 3.4.2S, 3.5.x…

Mitigation only
Fix from $1,950 2012-03-29