Vulnerability index

Browse CVEs

162 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Unified Communications Manager HIGH 8.8
CVE-2025-20326

A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) Software and Cisco Unified CM Session Mana…

Fix: 15su3+
Fix from $1,950 2025-09-03
Telepresence Video Communication Server HIGH 7.4
CVE-2022-20853

A vulnerability in the REST API of Cisco Expressway Series and Cisco TelePresence VCS could allow an unauthenticated, remote attacker to co…

Mitigation only
Fix from $1,950 2024-11-15
Ata 191 Firmware MEDIUM 6.5
CVE-2024-20421

A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remot…

Fix: 11.2.5 / 12.0.2+
Fix from $1,600 2024-10-16
Ios Xe HIGH 8.8
CVE-2024-20437

A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to perform a cross-sit…

Mitigation only
Fix from $1,950 2024-09-25
Ios Xe MEDIUM 6.5
CVE-2024-20414

A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cr…

Mitigation only
Fix from $1,600 2024-09-25
Identity Services Engine HIGH 8.8
CVE-2024-20486

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond…

Fix: 3.1+
Fix from $1,950 2024-08-21
Identity Services Engine HIGH 8.8
CVE-2024-20368

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond…

Fix: 3.1.0+
Fix from $1,950 2024-04-03
Emergency Responder MEDIUM 6.5
CVE-2024-20347

A vulnerability in Cisco Emergency Responder could allow an unauthenticated, remote attacker to conduct a CSRF attack, which could allow the attacker…

Fix: 12.5+
Fix from $1,600 2024-04-03
Nexus Dashboard HIGH 8.8
CVE-2024-20281

A vulnerability in the web-based management interface of Cisco Nexus Dashboard and Cisco Nexus Dashboard hosted services could allow an unauthenticat…

Fix: 3.1 / 4.3+
Fix from $1,950 2024-04-03
Expressway HIGH 8.8
CVE-2024-20254

Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote at…

Fix: after 15.0
Fix from $1,950 2024-02-07
Expressway HIGH 7.1
CVE-2024-20255

A vulnerability in the SOAP API of Cisco Expressway Series and Cisco TelePresence Video Communication Server could allow an unauthenticated, remote a…

Fix: 15.0+
Fix from $1,950 2024-02-07
Expressway HIGH 8.8
CVE-2024-20252

Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote at…

Fix: after 15.0
Fix from $1,950 2024-02-07
Video Phone 8875 Firmware MEDIUM 6.5
CVE-2023-20221

A vulnerability in the web-based management interface of Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware could allow an unauth…

Fix: 2.0+
Fix from $1,600 2023-08-16
Prime Infrastructure MEDIUM 6.5
CVE-2023-20130

Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (EPNM) co…

Fix: 3.10.2 / 5.0.2.5+
Fix from $1,600 2023-04-05
Sd Wan HIGH 8.1
CVE-2023-20113

A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to conduct a c…

Fix: 20.6.5+
Fix from $1,950 2023-03-23
Application Policy Infrastructure Controller HIGH 8.8
CVE-2023-20011

A vulnerability in the web-based management interface of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Network Controller…

Fix: 5.2 / 6.0+
Fix from $1,950 2023-02-23
Identity Services Engine HIGH 8.8
CVE-2022-20961

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond…

Fix: 2.6.0+
Fix from $1,950 2022-11-04
Nexus Dashboard HIGH 8.8
CVE-2022-20861

Multiple vulnerabilities in Cisco Nexus Dashboard could allow an unauthenticated, remote attacker to execute arbitrary commands, read or upload conta…

Fix: 2.2+
Fix from $1,950 2022-07-21
Unified Communications Manager MEDIUM 6.8
CVE-2022-20787

A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) Software and Cisco Unified CM Session Mana…

Fix: 12.5 / 14su1+
Fix from $1,600 2022-04-21
Catalyst Sd Wan Manager MEDIUM 6.5
CVE-2022-20735

A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to conduct a c…

Fix: 20.6.1+
Fix from $1,600 2022-04-15
Ip Phone 6871 Firmware HIGH 8.1
CVE-2022-20774

A vulnerability in the web-based management interface of Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware could allow an unauth…

Fix: 11.3.5+
Fix from $1,950 2022-04-06
Unified Communications Manager MEDIUM 6.5
CVE-2021-34773

A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Sess…

Mitigation only
Fix from $1,600 2021-11-04
Webex Meetings HIGH 7.1
CVE-2021-34743

A vulnerability in the application integration feature of Cisco Webex Software could allow an unauthenticated, remote attacker to authorize an extern…

Mitigation only
Fix from $1,950 2021-10-21
Nx Os HIGH 8.1
CVE-2021-1227

A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery…

Mitigation only
Fix from $1,950 2021-02-24
Catalyst Center HIGH 8.8
CVE-2021-1257

A vulnerability in the web-based management interface of Cisco DNA Center Software could allow an unauthenticated, remote attacker to conduct a cross…

Fix: 2.1.1.0 / 5.7.6+
Fix from $1,950 2021-01-20
Firepower Extensible Operating System HIGH 8.8
CVE-2020-3456

A vulnerability in the Cisco Firepower Chassis Manager (FCM) of Cisco FXOS Software could allow an unauthenticated, remote attacker to conduct a cros…

Patch available
Fix from $1,950 2020-10-21
Unified Communications Manager HIGH 8.8
CVE-2020-3135

A vulnerability in the web-based management interface of Cisco Unified Communications Manager (UCM) could allow an unauthenticated, remote attacker t…

Fix: 11.5+
Fix from $1,950 2020-09-23
Hosted Collaboration Mediation Fulfillment MEDIUM 6.5
CVE-2020-3124

A vulnerability in the web-based interface of Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) could allow an unauthenticated, remote attacke…

Fix: 12.5+
Fix from $1,600 2020-09-23
iOS HIGH 8.8
CVE-2019-16009

A vulnerability in the web UI of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request …

Fix: 16.1.1+
Fix from $1,950 2020-09-23
Aironet 1542i Firmware MEDIUM 6.5
CVE-2020-3261

A vulnerability in the web-based management interface of Cisco Mobility Express Software could allow an unauthenticated, remote attacker to conduct a…

Fix: 8.8.130.0+
Fix from $1,600 2020-04-15