Vulnerability index

Browse CVEs

34 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Certificate ValidationCWE-295 × clear
Nexus Dashboard MEDIUM 6.5
CVE-2026-20042

A vulnerability in the configuration backup feature of Cisco Nexus Dashboard could allow an attacker who has the encryption password and access to Fu…

Fix: 4.2.1+
Fix from $1,600 2026-04-01
Catalyst Sd Wan Manager MEDIUM 5.9
CVE-2025-20157

A vulnerability in certificate validation processing of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated,…

Mitigation only
Fix from $1,600 2025-05-07
Telepresence Video Communication Server HIGH 7.4
CVE-2022-20814

A vulnerability in the certificate validation of Cisco Expressway-C and Cisco TelePresence VCS could allow an unauthenticated, remote attac…

Mitigation only
Fix from $1,950 2024-11-15
Nexus Dashboard Orchestrator MEDIUM 5.9
CVE-2024-20385

A vulnerability in the SSL/TLS implementation of Cisco Nexus Dashboard Orchestrator (NDO) could allow an unauthenticated, remote attacker to intercep…

Fix: 4.2 / 4.4+
Fix from $1,600 2024-10-02
Email Security Appliance HIGH 7.5
CVE-2022-20960

A vulnerability in Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated remote attacker to cause a denial o…

Fix: 14.2.1-015 / 14.3.0-020+
Fix from $1,950 2022-11-04
Nexus Dashboard HIGH 7.4
CVE-2022-20860

A vulnerability in the SSL/TLS implementation of Cisco Nexus Dashboard could allow an unauthenticated, remote attacker to alter communications with a…

Fix: 2.2+
Fix from $1,950 2022-07-21
Expressway MEDIUM 5.9
CVE-2022-20813

Multiple vulnerabilities in the API and in the web-based management interface of Cisco Expressway Series and Cisco TelePresence Video Communication S…

Mitigation only
Fix from $1,600 2022-07-06
Rv340 Firmware HIGH 8.0
CVE-2022-20703 KEVEPSS 9%

Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Ex…

Fix: after 1.0.03.24
Fix from $1,950 2022-02-10
Catalyst Center HIGH 7.4
CVE-2021-1134

A vulnerability in the Cisco Identity Services Engine (ISE) integration feature of the Cisco DNA Center Software could allow an unauthenticated, remo…

Fix: 2.2.2.1+
Fix from $1,950 2021-06-29
Email Security Appliance HIGH 7.4
CVE-2021-1566

A vulnerability in the Cisco Advanced Malware Protection (AMP) for Endpoints integration of Cisco AsyncOS for Cisco Email Security Appliance (ESA) an…

Fix: 11.8.3-021 / 12.0.3-005+
Fix from $1,950 2021-06-16
Jabber MEDIUM 5.6
CVE-2021-1471

Multiple vulnerabilities in Cisco Jabber for Windows, Cisco Jabber for MacOS, and Cisco Jabber for mobile platforms could allow an attacker to execut…

Fix: 12.1.5 / 12.5.4+
Fix from $1,600 2021-03-24
Data Center Network Manager MEDIUM 6.5
CVE-2021-1276

Multiple vulnerabilities in Cisco Data Center Network Manager (DCNM) could allow an attacker to spoof a trusted host or construct a man-in-the-middle…

Fix: 11.5+
Fix from $1,600 2021-01-20
Data Center Network Manager MEDIUM 6.5
CVE-2021-1277

Multiple vulnerabilities in Cisco Data Center Network Manager (DCNM) could allow an attacker to spoof a trusted host or construct a man-in-the-middle…

Fix: 11.5+
Fix from $1,600 2021-01-20
Secure Firewall Management Center MEDIUM 5.3
CVE-2020-3557

A vulnerability in the host input API daemon of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to c…

Fix: 6.6.1+
Fix from $1,600 2020-10-21
Webex Meetings HIGH 8.8
CVE-2020-3342

A vulnerability in the software update feature of Cisco Webex Meetings Desktop App for Mac could allow an unauthenticated, remote attacker to execute…

Fix: 39.5.11+
Fix from $1,950 2020-06-18
Intelligence Proximity HIGH 7.4
CVE-2020-3155

A vulnerability in the SSL implementation of the Cisco Intelligent Proximity solution could allow an unauthenticated, remote attacker to view or alte…

Mitigation only
Fix from $1,950 2020-03-04
Ironport Web Security Appliance MEDIUM 5.9
CVE-2012-1316

Cisco IronPort Web Security Appliance does not check for certificate revocation which could lead to MITM attacks

Mitigation only
Fix from $1,600 2020-01-15
Webex Meetings MEDIUM 5.9
CVE-2019-1948

A vulnerability in Cisco Webex Meetings Mobile (iOS) could allow an unauthenticated, remote attacker to gain unauthorized read access to sensitive da…

Fix: after 39.5
Fix from $1,600 2019-08-21
Industrial Network Director MEDIUM 5.9
CVE-2019-1940

A vulnerability in the Web Services Management Agent (WSMA) feature of Cisco Industrial Network Director (IND) could allow an unauthenticated, remote…

Fix: 1.7+
Fix from $1,600 2019-07-17
Asyncos HIGH 8.6
CVE-2019-1886

A vulnerability in the HTTPS decryption feature of Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to cause a deni…

Fix: 10.5.5-005 / 11.5.2-020+
Fix from $1,950 2019-07-04
Sg200 50 Firmware HIGH 7.2
CVE-2019-1859

A vulnerability in the Secure Shell (SSH) authentication process of Cisco Small Business Switches software could allow an attacker to bypass client-s…

Fix: 1.4.10.6+
Fix from $1,950 2019-05-03
Nx Os HIGH 8.1
CVE-2019-1590

A vulnerability in the Transport Layer Security (TLS) certificate validation functionality of Cisco Nexus 9000 Series Application Centric Infrastruct…

Mitigation only
Fix from $1,950 2019-05-03
iOS MEDIUM 5.9
CVE-2019-1757

A vulnerability in the Cisco Smart Call Home feature of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to gain unautho…

Mitigation only
Fix from $1,600 2019-03-28
iOS HIGH 7.4
CVE-2019-1748

A vulnerability in the Cisco Network Plug-and-Play (PnP) agent of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote…

Patch available
Fix from $1,950 2019-03-28
Spa112 Firmware HIGH 7.4
CVE-2019-1683

A vulnerability in the certificate handling component of the Cisco SPA112, SPA525, and SPA5X5 Series IP Phones could allow an unauthenticated, remote…

Mitigation only
Fix from $1,950 2019-02-25
Prime Infrastructure HIGH 7.4
CVE-2019-1659

A vulnerability in the Identity Services Engine (ISE) integration feature of Cisco Prime Infrastructure (PI) could allow an unauthenticated, remote a…

Fix: after 3.4.0
Fix from $1,950 2019-02-21
Sd Wan CRITICAL 9.8
CVE-2018-15387

A vulnerability in the Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to bypass certificate validation on an affected device. …

Fix: 17.2.8+
Fix from $2,300 2018-10-05
Vedge 100 Firmware HIGH 7.4
CVE-2018-0434

A vulnerability in the Zero Touch Provisioning feature of the Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to gain unauthori…

Fix: 18.3.0+
Fix from $1,950 2018-10-05
Identity Services Engine HIGH 8.6
CVE-2018-0277

A vulnerability in the Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) certificate validation during EAP authentication for the…

Mitigation only
Fix from $1,950 2018-05-17
Adaptive Security Appliance Software HIGH 7.5
CVE-2018-0227

A vulnerability in the Secure Sockets Layer (SSL) Virtual Private Network (VPN) Client Certificate Authentication feature for Cisco Adaptive Security…

Fix: after 9.6.3.17
Fix from $1,950 2018-04-19