Vulnerability index

Browse CVEs

129 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
Ios Xe CRITICAL 9.0
CVE-2026-20267

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehen…

No fix yet
Fix from $2,300 2026-08-05
Roomos HIGH 8.8
CVE-2026-20150

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive inte…

Fix: 11.32.6.0 / 11.39.1.1+
Fix from $1,950 2026-07-15
Iot Field Network Director HIGH 7.7
CVE-2026-20167

A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low priv…

Fix: 5.0.0-117+
Fix from $1,950 2026-05-06
Adaptive Security Appliance Software MEDIUM 5.8
CVE-2026-20073

A vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could all…

Mitigation only
Fix from $1,600 2026-03-04
Desk Phone 9841 Firmware MEDIUM 5.3
CVE-2025-20335

A vulnerability in the directory permissions of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 could a…

Fix: 3.3 / 14.3+
Fix from $1,600 2025-09-03
Identity Services Engine HIGH 7.2
CVE-2025-20130

A vulnerability in the API of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, r…

Fix: 3.1.0+
Fix from $1,950 2025-06-04
Unified Contact Center Enterprise CRITICAL 9.1
CVE-2025-20242EPSS 5%

A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthenticated, remote attacker to re…

Mitigation only
Fix from $2,300 2025-05-21
Ios Xe MEDIUM 6.5
CVE-2025-20190

A vulnerability in the lobby ambassador web interface of Cisco IOS XE Wireless Controller Software could allow an authenticated, remote attacker to r…

Mitigation only
Fix from $1,600 2025-05-07
Ios Xr MEDIUM 5.8
CVE-2025-20144

A vulnerability in the hybrid access control list (ACL) processing of IPv4 packets in Cisco IOS XR Software could allow an unauthenticated, remote at…

Mitigation only
Fix from $1,600 2025-03-12
Asyncos MEDIUM 5.3
CVE-2020-3122

A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Content Security Management Appliance (SMA) could allow an unauthent…

Mitigation only
Fix from $1,600 2025-03-04
Secure Email Gateway MEDIUM 5.3
CVE-2025-20153

A vulnerability in the email filtering mechanism of Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to bypass the configur…

Mitigation only
Fix from $1,600 2025-02-19
Secure Firewall Threat Defense MEDIUM 5.3
CVE-2021-34753

A vulnerability in the payload inspection for Ethernet Industrial Protocol (ENIP) traffic for Cisco Firepower Threat Defense (FTD) Software could all…

Fix: 6.4.0.13 / 6.6.5.1+
Fix from $1,600 2024-11-15
Ios Xe Sd Wan MEDIUM 5.3
CVE-2024-20373

A vulnerability in the implementation of the Simple Network Management Protocol (SNMP) IPv4 access control list (ACL) feature of Cisco IOS Software a…

Mitigation only
Fix from $1,600 2024-11-15
iOS MEDIUM 5.8
CVE-2024-20465

A vulnerability in the access control list (ACL) programming of Cisco IOS Software running on Cisco Industrial Ethernet 4000, 4010, and 5000 Series S…

Mitigation only
Fix from $1,600 2024-09-25
Ios Xr MEDIUM 5.5
CVE-2024-20343

A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to read any file in the file system of the underlyin…

Mitigation only
Fix from $1,600 2024-09-11
Secure Firewall Threat Defense MEDIUM 5.8
CVE-2024-20261

A vulnerability in the file policy feature that is used to inspect encrypted archive files of Cisco Firepower Threat Defense (FTD) Software could all…

Mitigation only
Fix from $1,600 2024-05-22
Ios Xr MEDIUM 5.8
CVE-2024-20322

A vulnerability in the access control list (ACL) processing on Pseudowire interfaces in the ingress direction of Cisco IOS XR Software could allow an…

Mitigation only
Fix from $1,600 2024-03-13
Nx Os MEDIUM 5.8
CVE-2024-20291

A vulnerability in the access control list (ACL) programming for port channel subinterfaces of Cisco Nexus 3000 and 9000 Series Switches in standalon…

Mitigation only
Fix from $1,600 2024-02-29
Unified Intelligence Center HIGH 7.1
CVE-2024-20325

A vulnerability in the Live Data server of Cisco Unified Intelligence Center could allow an unauthenticated, local attacker to read and modify data i…

Fix: 12.5 / 12.6+
Fix from $1,950 2024-02-21
Cbs250 8t D Firmware HIGH 7.2
CVE-2024-20263

A vulnerability with the access control list (ACL) management within a stacked switch configuration of Cisco Business 250 Series Smart Switches and B…

Fix: 2.5.9.54 / 3.4.0.17+
Fix from $1,950 2024-01-26
Evolved Programmable Network Manager MEDIUM 6.7
CVE-2023-20260

A vulnerability in the application CLI of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager could allow an authenticated, loc…

Fix: 3.10.4 / 7.1.1+
Fix from $1,600 2024-01-17
Secure Firewall Threat Defense MEDIUM 5.3
CVE-2023-20267

A vulnerability in the IP geolocation rules of Snort 3 could allow an unauthenticated, remote attacker to potentially bypass IP address restrictions.…

Fix: after 7.3.1.1
Fix from $1,600 2023-11-01
Catalyst Sd Wan Manager MEDIUM 6.5
CVE-2023-20261

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to retrieve arbitrary files from an affe…

Mitigation only
Fix from $1,600 2023-10-18
Dna Center HIGH 8.2
CVE-2023-20223

A vulnerability in Cisco DNA Center could allow an unauthenticated, remote attacker to read and modify data in a repository that belongs to an intern…

Fix: 2.3.5.4+
Fix from $1,950 2023-09-27
Ios Xr HIGH 7.5
CVE-2023-20191

A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direction of Cisco IOS XR Software could allow an unaut…

Fix: 7.7.21 / 7.9.2+
Fix from $1,950 2023-09-13
Application Policy Infrastructure Controller MEDIUM 5.4
CVE-2023-20230

A vulnerability in the restricted security domain implementation of Cisco Application Policy Infrastructure Controller (APIC) could allow an authenti…

Fix: 5.2 / 6.0+
Fix from $1,600 2023-08-23
Thousandeyes Enterprise Agent HIGH 7.8
CVE-2023-20224

A vulnerability in the CLI of Cisco ThousandEyes Enterprise Agent, Virtual Appliance installation type, could allow an authenticated, local attacker …

Fix: 0.230+
Fix from $1,950 2023-08-16
Ios Xe HIGH 7.8
CVE-2023-20065

A vulnerability in the Cisco IOx application hosting subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privi…

Mitigation only
Fix from $1,950 2023-03-23
Firepower Services Software For Asa HIGH 7.5
CVE-2022-20918

A vulnerability in the Simple Network Management Protocol (SNMP) access controls for Cisco FirePOWER Software for Adaptive Security Appliance (ASA) F…

Fix: 7.0.5+
Fix from $1,950 2022-11-15
Catalyst Sd Wan Manager HIGH 8.8
CVE-2022-20696

A vulnerability in the binding configuration of Cisco SD-WAN vManage Software containers could allow an unauthenticated, adjacent attacker who has ac…

Fix: 20.6.4 / 20.9.1+
Fix from $1,950 2022-09-08