Vulnerability index

Browse CVEs

129 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
Unified Communications Manager HIGH 8.8
CVE-2022-20859

A vulnerability in the Disaster Recovery framework of Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager IM &amp…

Fix: 14su2 / 14.0su2+
Fix from $1,950 2022-07-06
Enterprise Nfv Infrastructure Software CRITICAL 9.9
CVE-2022-20777EPSS 11%

Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM…

Fix: 4.7.1+
Fix from $2,300 2022-05-04
Enterprise Nfv Infrastructure Software HIGH 8.8
CVE-2022-20779EPSS 10%

Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM…

Fix: 4.7.1+
Fix from $1,950 2022-05-04
Enterprise Nfv Infrastructure Software HIGH 7.4
CVE-2022-20780EPSS 11%

Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM…

Fix: 4.7.1+
Fix from $1,950 2022-05-04
Virtualized Infrastructure Manager HIGH 7.8
CVE-2022-20732

A vulnerability in the configuration file protections of Cisco Virtualized Infrastructure Manager (VIM) could allow an authenticated, local attacker …

Fix: 4.2.2+
Fix from $1,950 2022-04-21
Catalyst Sd Wan Manager HIGH 7.8
CVE-2022-20716

A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain escalated privileges. This vulnerability is …

Fix: 20.6.1 / 20.7.1+
Fix from $1,950 2022-04-15
Ultra Cloud Core Subscriber Microservices Infrastructure HIGH 7.8
CVE-2022-20762

A vulnerability in the Common Execution Environment (CEE) ConfD CLI of Cisco Ultra Cloud Core - Subscriber Microservices Infrastructure (SMI) softwar…

Fix: 2020.02.2.47 / 2020.02.7.07+
Fix from $1,950 2022-04-06
Catalyst Pon Switch Cgp Ont 1p Firmware CRITICAL 9.8
CVE-2021-34795

Multiple vulnerabilities in the web-based management interface of the Cisco Catalyst Passive Optical Network (PON) Series Switches Optical Network Te…

Fix: 1.1.1.14 / 1.1.3.17+
Fix from $2,300 2021-11-04
Catalyst Pon Switch Cgp Ont 1p Firmware CRITICAL 9.8
CVE-2021-40113

Multiple vulnerabilities in the web-based management interface of the Cisco Catalyst Passive Optical Network (PON) Series Switches Optical Network Te…

Fix: 1.1.1.14 / 1.1.3.17+
Fix from $2,300 2021-11-04
Catalyst Pon Switch Cgp Ont 1p Firmware HIGH 7.5
CVE-2021-40112

Multiple vulnerabilities in the web-based management interface of the Cisco Catalyst Passive Optical Network (PON) Series Switches Optical Network Te…

Fix: 1.1.1.14 / 1.1.3.17+
Fix from $1,950 2021-11-04
Secure Firewall Threat Defense MEDIUM 5.3
CVE-2021-34794

A vulnerability in the Simple Network Management Protocol version 3 (SNMPv3) access control functionality of Cisco Adaptive Security Appliance (ASA) …

Fix: 6.4.0.13 / 6.6.5+
Fix from $1,600 2021-10-27
Secure Firewall Management Center HIGH 7.5
CVE-2021-34754

Multiple vulnerabilities in the payload inspection for Ethernet Industrial Protocol (ENIP) traffic for Cisco Firepower Threat Defense (FTD) Software …

Fix: 6.4.0.13 / 6.6.5.1+
Fix from $1,950 2021-10-27
Ios Xe Sd Wan MEDIUM 6.0
CVE-2021-34724

A vulnerability in the Cisco IOS XE SD-WAN Software CLI could allow an authenticated, local attacker to elevate privileges and execute arbitrary code…

Fix: after 17.3.1a
Fix from $1,600 2021-09-23
Ios Xe MEDIUM 5.8
CVE-2021-34696

A vulnerability in the access control list (ACL) programming of Cisco ASR 900 and ASR 920 Series Aggregation Services Routers could allow an unauthen…

Fix: after 17.3.2
Fix from $1,600 2021-09-23
Ios Xe MEDIUM 5.8
CVE-2021-1625

A vulnerability in the Zone-Based Policy Firewall feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to prevent the Zon…

Fix: 17.3.2+
Fix from $1,600 2021-09-23
Aironet 1542d Firmware HIGH 7.8
CVE-2021-1419

A vulnerability in the SSH management feature of multiple Cisco Access Points (APs) platforms could allow a local, authenticated user to modify files…

Patch available
Fix from $1,950 2021-09-23
Nx Os MEDIUM 5.3
CVE-2021-1591

A vulnerability in the EtherChannel port subscription logic of Cisco Nexus 9500 Series Switches could allow an unauthenticated, remote attacker to by…

Patch available
Fix from $1,600 2021-08-25
Application Policy Infrastructure Controller CRITICAL 9.1
CVE-2021-1581

Multiple vulnerabilities in the web UI and API endpoints of Cisco Application Policy Infrastructure Controller (APIC) or Cisco Cloud APIC could allow…

Fix: 3.2 / 4.2+
Fix from $2,300 2021-08-25
Application Policy Infrastructure Controller HIGH 7.2
CVE-2021-1580

Multiple vulnerabilities in the web UI and API endpoints of Cisco Application Policy Infrastructure Controller (APIC) or Cisco Cloud APIC could allow…

Fix: 3.2 / 4.2+
Fix from $1,950 2021-08-25
Application Policy Infrastructure Controller CRITICAL 9.1
CVE-2021-1577

A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Application Policy Infrastructure Con…

Fix: 3.2 / 4.2+
Fix from $2,300 2021-08-25
Intersight Virtual Appliance HIGH 8.3
CVE-2021-1600

Multiple vulnerabilities in Cisco Intersight Virtual Appliance could allow an unauthenticated, adjacent attacker to access sensitive internal service…

Patch available
Fix from $1,950 2021-07-22
Intersight Virtual Appliance HIGH 8.3
CVE-2021-1601

Multiple vulnerabilities in Cisco Intersight Virtual Appliance could allow an unauthenticated, adjacent attacker to access sensitive internal service…

Patch available
Fix from $1,950 2021-07-22
Hosted Collaboration Mediation Fulfillment MEDIUM 6.5
CVE-2021-1478

A vulnerability in the Java Management Extensions (JMX) component of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communicatio…

Fix: 12.6+
Fix from $1,600 2021-05-06
Catalyst Sd Wan Manager HIGH 8.8
CVE-2021-1284

A vulnerability in the web-based messaging service interface of Cisco SD-WAN vManage Software could allow an unauthenticated, adjacent attacker to by…

Fix: 20.3.1 / 20.4.1+
Fix from $1,950 2021-05-06
Aironet Access Point Software MEDIUM 6.7
CVE-2021-1449

A vulnerability in the boot logic of Cisco Access Points Software could allow an authenticated, local attacker to execute unsigned code at boot time.…

Fix: 8.5.171.0 / 8.10.150.0+
Fix from $1,600 2021-03-24
Nx Os MEDIUM 6.5
CVE-2021-1228

A vulnerability in the fabric infrastructure VLAN connection establishment of Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastr…

Mitigation only
Fix from $1,600 2021-02-24
Ios Xr MEDIUM 6.5
CVE-2021-1389

A vulnerability in the IPv6 traffic processing of Cisco IOS XR Software and Cisco NX-OS Software for certain Cisco devices could allow an unauthentic…

Fix: 6.6.3+
Fix from $1,600 2021-02-04
Ios Xr HIGH 7.5
CVE-2021-1243

A vulnerability in the Local Packet Transport Services (LPTS) programming of the SNMP with the management plane protection feature of Cisco IOS XR So…

Fix: 6.6.4 / 7.0.2+
Fix from $1,950 2021-02-04
Expressway MEDIUM 6.5
CVE-2020-3482

A vulnerability in the Traversal Using Relays around NAT (TURN) server component of Cisco Expressway software could allow an unauthenticated, remote …

Mitigation only
Fix from $1,600 2020-11-18
Iot Field Network Director HIGH 8.7
CVE-2020-26072

A vulnerability in the SOAP API of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to access and modify informat…

Fix: 4.6.1+
Fix from $1,950 2020-11-18