Vulnerability index

Browse CVEs

162 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper AuthenticationCWE-287 × clear
Meeting Server MEDIUM 5.3
CVE-2020-3197

A vulnerability in the API subsystem of Cisco Meetings App could allow an unauthenticated, remote attacker to retain and reuse the Traversal Using Re…

Mitigation only
Fix from $1,600 2020-07-16
Rv110w Firmware CRITICAL 9.8
CVE-2020-3144

A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction …

Fix: 1.0.3.55 / 1.2.2.8+
Fix from $2,300 2020-07-16
Sg250x 24 Firmware CRITICAL 9.8
CVE-2020-3297

A vulnerability in session management for the web-based interface of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, …

Fix: 2.5.5.47+
Fix from $2,300 2020-07-02
Webex Meetings CRITICAL 9.8
CVE-2020-3361

A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to gain unauthorized access t…

Fix: 4.0+
Fix from $2,300 2020-06-18
Ios Xe Sd Wan MEDIUM 6.8
CVE-2020-3216

A vulnerability in Cisco IOS XE SD-WAN Software could allow an unauthenticated, physical attacker to bypass authentication and gain unrestricted acce…

Mitigation only
Fix from $1,600 2020-06-03
Asa 5505 Firmware CRITICAL 9.8
CVE-2020-3125

A vulnerability in the Kerberos authentication feature of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote att…

Mitigation only
Fix from $2,300 2020-05-06
Asa 5500 Firmware HIGH 7.5
CVE-2011-2054

A vulnerability in the Cisco ASA that could allow a remote attacker to successfully authenticate using the Cisco AnyConnect VPN client if the Seconda…

Mitigation only
Fix from $1,950 2020-02-19
Linksys E4200 Firmware CRITICAL 9.8
CVE-2013-2681EPSS 10%

Cisco Linksys E4200 1.0.05 Build 7 devices contain a Security Bypass Vulnerability which could allow remote attackers to gain unauthorized access.

No fix yet
Fix from $2,300 2020-02-05
Linksys Ea2700 Firmware CRITICAL 9.8
CVE-2013-5122

Cisco Linksys Routers EA2700, EA3500, E4200, EA4500: A bug can cause an unsafe TCP port to open which leads to unauthenticated access

No fix yet
Fix from $2,300 2020-01-07
Webex Meetings Online MEDIUM 5.3
CVE-2019-15987

A vulnerability in web interface of the Cisco Webex Event Center, Cisco Webex Meeting Center, Cisco Webex Support Center, and Cisco Webex Training Ce…

Mitigation only
Fix from $1,600 2019-11-26
Enterprise Chat And Email MEDIUM 6.5
CVE-2019-1877

A vulnerability in the HTTP API of Cisco Enterprise Chat and Email could allow an unauthenticated, remote attacker to download files attached through…

No fix yet
Fix from $1,600 2019-11-05
Firepower Services Software For Asa MEDIUM 5.3
CVE-2019-1980

A vulnerability in the protocol detection component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco …

Fix: after 2.9.14.5
Fix from $1,600 2019-11-05
Ios Xe HIGH 7.5
CVE-2019-12664

A vulnerability in the Dialer interface feature for ISDN connections in Cisco IOS XE Software for Cisco 4000 Series Integrated Services Routers (ISRs…

Mitigation only
Fix from $1,950 2019-09-25
Ios Xe CRITICAL 10.0
CVE-2019-12643EPSS 5%

A vulnerability in the Cisco REST API virtual service container for Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass a…

Mitigation only
Fix from $2,300 2019-08-28
Integrated Management Controller Supervisor CRITICAL 9.8
CVE-2019-1937EPSS 76%

A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS D…

Fix: after 6.7.1.0
Fix from $2,300 2019-08-21
Ucs Director CRITICAL 9.8
CVE-2019-1938

A vulnerability in the web-based management interface of Cisco UCS Director and Cisco UCS Director Express for Big Data could allow an unauthenticate…

Mitigation only
Fix from $2,300 2019-08-21
Integrated Management Controller Supervisor CRITICAL 9.8
CVE-2019-1974

A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS D…

Fix: after 6.7.2.0
Fix from $2,300 2019-08-21
Enterprise Network Function Virtualization Infrastructure MEDIUM 6.5
CVE-2019-1946

A vulnerability in the web-based management interface of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote …

Fix: 3.10.1+
Fix from $1,600 2019-08-08
Vision Dynamic Signage Director CRITICAL 9.8
CVE-2019-1917EPSS 5%

A vulnerability in the REST API interface of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remote attacker to bypass authenti…

Fix: after 6.1
Fix from $2,300 2019-07-17
Ios Xr Firmware MEDIUM 5.4
CVE-2019-1842

A vulnerability in the Secure Shell (SSH) authentication function of Cisco IOS XR Software could allow an authenticated, remote attacker to successfu…

Mitigation only
Fix from $1,600 2019-06-05
Elastic Services Controller CRITICAL 10.0
CVE-2019-1867EPSS 30%

A vulnerability in the REST API of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to bypass authentication o…

Fix: 4.5+
Fix from $2,300 2019-05-10
Rv325 Dual Wan Gigabit Vpn Router Firmware HIGH 8.8
CVE-2019-1724

A vulnerability in the session management functionality of the web-based interface for Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Rout…

Mitigation only
Fix from $1,950 2019-05-03
Wireless Lan Controller Software HIGH 7.5
CVE-2018-0382

A vulnerability in the session identification management functionality of the web-based interface of Cisco Wireless LAN Controller (WLC) Software cou…

Mitigation only
Fix from $1,950 2019-04-17
Duo Network Gateway HIGH 7.5
CVE-2018-7340

Duo Network Gateway 1.2.9 and earlier may incorrectly utilize the results of XML DOM traversal and canonicalization APIs in such a way that an attack…

Fix: after 1.2.9
Fix from $1,950 2019-04-17
Ios Xe MEDIUM 5.3
CVE-2019-1759

A vulnerability in access control list (ACL) functionality of the Gigabit Ethernet Management interface of Cisco IOS XE Software could allow an unaut…

Patch available
Fix from $1,600 2019-03-28
Hyperflex Hx Data Platform HIGH 7.8
CVE-2019-1664

A vulnerability in the hxterm service of Cisco HyperFlex Software could allow an unauthenticated, local attacker to gain root access to all nodes in …

Mitigation only
Fix from $1,950 2019-02-21
Hyperflex Hx Data Platform MEDIUM 5.3
CVE-2019-1666

A vulnerability in the Graphite service of Cisco HyperFlex software could allow an unauthenticated, remote attacker to retrieve data from the Graphit…

Mitigation only
Fix from $1,600 2019-02-21
Prime Collaboration Assurance CRITICAL 9.1
CVE-2019-1662

A vulnerability in the Quality of Voice Reporting (QOVR) service of Cisco Prime Collaboration Assurance (PCA) Software could allow an unauthenticated…

Fix: 12.1+
Fix from $2,300 2019-02-21
Ios Xe MEDIUM 6.7
CVE-2018-15371

A vulnerability in the shell access request mechanism of Cisco IOS XE Software could allow an authenticated, local attacker to bypass authentication …

Mitigation only
Fix from $1,600 2018-10-05
Umbrella CRITICAL 9.1
CVE-2018-0435

A vulnerability in the Cisco Umbrella API could allow an authenticated, remote attacker to view and modify data across their organization and other o…

Mitigation only
Fix from $2,300 2018-10-05