Vulnerability index

Browse CVEs

162 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper AuthenticationCWE-287 × clear
Catalyst Sd Wan Manager CRITICAL 10.0
CVE-2026-20182 KEVEPSS 92%

May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fixed after the was disclosed …

Fix: 20.9.9.1 / 20.12.5.4+
Fix from $2,300 2026-05-14
Catalyst Sd Wan Manager CRITICAL 9.8
CVE-2026-20129

A vulnerability in the API user authentication of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain access to an …

Fix: 20.9.8.2 / 20.12.5.3+
Fix from $2,300 2026-02-25
Catalyst Sd Wan Manager CRITICAL 10.0
CVE-2026-20127 KEVEPSS 88%

A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD…

Fix: 20.9.8.2 / 20.12.5.3+
Fix from $2,300 2026-02-25
Duo Authentication For Windows Logon And Rdp MEDIUM 6.2
CVE-2024-20301

A vulnerability in Cisco Duo Authentication for Windows Logon and RDP could allow an authenticated, physical attacker to bypass secondary authenticat…

Fix: 4.3.0+
Fix from $1,600 2024-03-06
Catalyst Sd Wan Manager CRITICAL 9.8
CVE-2023-20252

A vulnerability in the Security Assertion Markup Language (SAML) APIs of Cisco Catalyst SD-WAN Manager Software could allow an unauthenticated, remot…

Mitigation only
Fix from $2,300 2023-09-27
Broadworks Application Delivery Platform CRITICAL 9.8
CVE-2023-20238EPSS 15%

A vulnerability in the single sign-on (SSO) implementation of Cisco BroadWorks Application Delivery Platform and Cisco BroadWorks Xtended Services Pl…

Fix: 23.0.1075.ap384245+
Fix from $2,300 2023-09-06
Catalyst Sd Wan Manager CRITICAL 9.1
CVE-2023-20214

A vulnerability in the request authentication validation for the REST API of Cisco SD-WAN vManage software could allow an unauthenticated, remote att…

Fix: 20.6.4.2 / 20.6.5.5+
Fix from $2,300 2023-08-03
Duo MEDIUM 6.6
CVE-2023-20199

A vulnerability in Cisco Duo Two-Factor Authentication for macOS could allow an authenticated, physical attacker to bypass secondary authentication a…

Fix: 2.0.2+
Fix from $1,600 2023-06-28
Firepower Services Software For Asa HIGH 7.5
CVE-2022-20918

A vulnerability in the Simple Network Management Protocol (SNMP) access controls for Cisco FirePOWER Software for Adaptive Security Appliance (ASA) F…

Fix: 7.0.5+
Fix from $1,950 2022-11-15
Duo MEDIUM 6.8
CVE-2022-20662

A vulnerability in the smart card login authentication of Cisco Duo for macOS could allow an unauthenticated attacker with physical access to bypass …

Fix: 2.0.0+
Fix from $1,600 2022-09-30
Rv110w Firmware CRITICAL 9.8
CVE-2022-20923

A vulnerability in the IPSec VPN Server authentication functionality of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an…

Mitigation only
Fix from $2,300 2022-09-08
Identity Services Engine CRITICAL 9.8
CVE-2022-20733

A vulnerability in the login page of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to log in without credentia…

No fix yet
Fix from $2,300 2022-06-15
Email Security Appliance CRITICAL 9.8
CVE-2022-20798

A vulnerability in the external authentication functionality of Cisco Secure Email and Web Manager, formerly known as Cisco Security Management Appli…

Fix: 13.0.0-277 / 13.6.2-090+
Fix from $2,300 2022-06-15
Wireless Lan Controller 8.10.151.0 CRITICAL 10.0
CVE-2022-20695EPSS 20%

A vulnerability in the authentication functionality of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker t…

Mitigation only
Fix from $2,300 2022-04-15
Broadworks Commpilot Application Software HIGH 7.2
CVE-2021-34785

Multiple vulnerabilities in Cisco BroadWorks CommPilot Application Software could allow an authenticated, remote attacker to delete arbitrary user ac…

Fix: 22.0.2021.09 / 23.0.2021.09+
Fix from $1,950 2021-09-09
Enterprise Nfv Infrastructure Software CRITICAL 9.8
CVE-2021-34746EPSS 18%

A vulnerability in the TACACS+ authentication, authorization and accounting (AAA) feature of Cisco Enterprise NFV Infrastructure Software (NFVIS) cou…

Fix: 4.6.1+
Fix from $2,300 2021-09-02
Secure Email And Web Manager MEDIUM 5.4
CVE-2021-1561

A vulnerability in the spam quarantine feature of Cisco Secure Email and Web Manager, formerly Cisco Security Management Appliance (SMA), could allow…

Fix: after 14.1
Fix from $1,600 2021-08-18
Sf220 24 Firmware MEDIUM 6.1
CVE-2021-1571EPSS 10%

Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the fo…

Fix: 1.2.0.6+
Fix from $1,600 2021-06-16
Sf220 24 Firmware HIGH 8.1
CVE-2021-1542

Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the fo…

Fix: 1.2.0.6+
Fix from $1,950 2021-06-16
Sf220 24 Firmware HIGH 7.2
CVE-2021-1541EPSS 9%

Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the fo…

Fix: 1.2.0.6+
Fix from $1,950 2021-06-16
Sf220 24 Firmware MEDIUM 6.1
CVE-2021-1543EPSS 9%

Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the fo…

Fix: 1.2.0.6+
Fix from $1,600 2021-06-16
Catalyst Sd Wan Manager CRITICAL 9.8
CVE-2021-1468

Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to…

Fix: 20.3.3 / 20.4.1+
Fix from $2,300 2021-05-06
Rv160 Firmware CRITICAL 9.8
CVE-2021-1472EPSS 72%

Multiple vulnerabilities exist in the web-based management interface of Cisco Small Business RV Series Routers. A remote attacker could execute arbit…

Fix: 1.0.01.03 / 1.0.03.21+
Fix from $2,300 2021-04-08
Secure Firewall Threat Defense MEDIUM 5.8
CVE-2020-3565

A vulnerability in the TCP Intercept functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker t…

Fix: 6.4.0.8 / 6.5.0.4+
Fix from $1,600 2020-10-21
Secure Firewall Management Center HIGH 8.1
CVE-2020-3410

A vulnerability in the Common Access Card (CAC) authentication feature of Cisco Firepower Management Center (FMC) Software could allow an unauthentic…

Mitigation only
Fix from $1,950 2020-10-21
Secure Firewall Management Center CRITICAL 9.8
CVE-2019-16028

A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to b…

Fix: 6.2.3.16 / 6.3.0.6+
Fix from $2,300 2020-09-23
Sg250x 24 Firmware MEDIUM 5.3
CVE-2019-15993EPSS 10%

A vulnerability in the web UI of Cisco Small Business Switches could allow an unauthenticated, remote attacker to access sensitive device information…

Fix: 2.5.0.92+
Fix from $1,600 2020-09-23
Connected Mobile Experiences MEDIUM 6.7
CVE-2020-3151

A vulnerability in the CLI of Cisco Connected Mobile Experiences (CMX) could allow an authenticated, local attacker with administrative credentials t…

Mitigation only
Fix from $1,600 2020-08-26
Catalyst Center HIGH 7.5
CVE-2020-3411

A vulnerability in Cisco DNA Center software could allow an unauthenticated remote attacker access to sensitive information on an affected system. Th…

Fix: 1.3.1.4+
Fix from $1,950 2020-08-17
Sd Wan Firmware HIGH 7.8
CVE-2020-3388

A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to inject arbitrary commands that are execut…

Fix: 19.2.2 / 20.1.1+
Fix from $1,950 2020-07-16