Vulnerability index

Browse CVEs

20 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Insufficiently Protected CredentialsCWE-522 × clear
Catalyst Sd Wan Manager MEDIUM 6.5
CVE-2021-1232

A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to read arb…

Mitigation only
Fix from $1,600 2024-11-18
Ata 191 Firmware MEDIUM 5.5
CVE-2024-20462

A vulnerability in the web-based management interface of Cisco ATA 190 Series Multiplatform Analog Telephone Adapter firmware could allow an authenti…

Fix: 11.2.5 / 12.0.2+
Fix from $1,600 2024-10-16
Ios Xr MEDIUM 5.5
CVE-2024-20489

A vulnerability in the storage method of the PON Controller configuration file could allow an authenticated, local attacker with low privileges to ob…

Mitigation only
Fix from $1,600 2024-09-11
Nexus Dashboard MEDIUM 6.0
CVE-2024-20282

A vulnerability in Cisco Nexus Dashboard could allow an authenticated, local attacker with valid rescue-user credentials to elevate privileges to roo…

Fix: 3.1+
Fix from $1,600 2024-04-03
Staros HIGH 8.8
CVE-2023-20046

A vulnerability in the key-based SSH authentication feature of Cisco StarOS Software could allow an authenticated, remote attacker to elevate privile…

Fix: 21.22.14 / 21.23.31+
Fix from $1,950 2023-05-09
Sd Wan MEDIUM 6.5
CVE-2021-1589

A vulnerability in the disaster recovery feature of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain unauthorized …

Fix: 20.3.4 / 20.4.2+
Fix from $1,600 2021-09-23
Evolved Programmable Network Manager MEDIUM 5.5
CVE-2021-34733

A vulnerability in the CLI of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager could allow an authenticated, local att…

Fix: 3.8 / 5.0+
Fix from $1,600 2021-09-02
Catalyst Sd Wan Manager MEDIUM 5.5
CVE-2021-34700

A vulnerability in the CLI interface of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to read arbitrary files on the und…

Fix: 20.4.2 / 20.5.1+
Fix from $1,600 2021-07-22
Thousandeyes Recorder MEDIUM 5.5
CVE-2021-1537

A vulnerability in the installer software of Cisco ThousandEyes Recorder could allow an unauthenticated, local attacker to access sensitive informati…

Fix: 1.0.5+
Fix from $1,600 2021-06-04
iOS HIGH 7.8
CVE-2021-1392

A vulnerability in the CLI command permissions of Cisco IOS and Cisco IOS XE Software could allow an authenticated, local attacker to retrieve the pa…

Mitigation only
Fix from $1,950 2021-03-24
Secure Firewall Management Center MEDIUM 5.5
CVE-2021-1126

A vulnerability in the storage of proxy server credentials of Cisco Firepower Management Center (FMC) could allow an authenticated, local attacker to…

Fix: 6.7.0+
Fix from $1,600 2021-01-13
Duo Network Gateway MEDIUM 6.3
CVE-2020-3483

Duo has identified and fixed an issue with the Duo Network Gateway (DNG) product in which some customer-provided SSL certificates and private keys we…

Fix: after 1.5.7
Fix from $1,600 2020-10-14
Asyncos MEDIUM 6.5
CVE-2020-3547

A vulnerability in the web-based management interface of Cisco AsyncOS software for Cisco Email Security Appliance (ESA), Cisco Content Security Mana…

Fix: after 13.6.1-193
Fix from $1,600 2020-09-04
Sd Wan HIGH 7.8
CVE-2020-3180

A vulnerability in Cisco SD-WAN Solution Software could allow an unauthenticated, local attacker to access an affected device by using an account tha…

Fix: 18.3.6 / 18.4.5+
Fix from $1,950 2020-07-16
Digital Network Architecture Center MEDIUM 6.5
CVE-2020-3391

A vulnerability in Cisco Digital Network Architecture (DNA) Center could allow an authenticated, remote attacker to view sensitive information in cle…

Fix: 1.2.10+
Fix from $1,600 2020-07-02
Unified Communications Manager HIGH 8.8
CVE-2018-0474

A vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an authenticated, remote attacker to view d…

Mitigation only
Fix from $1,950 2019-01-10
Dpc2100 Firmware CRITICAL 9.8
CVE-2018-20392

S-A WebSTAR DPC2100 v2.0.2r1256-060303 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.…

No fix yet
Fix from $2,300 2018-12-23
Prime Collaboration HIGH 7.8
CVE-2018-0335

A vulnerability in the web portal authentication process of Cisco Prime Collaboration Provisioning could allow an unauthenticated, local attacker to …

Mitigation only
Fix from $1,950 2018-06-07
Ultra Services Framework CRITICAL 9.8
CVE-2017-6709

A vulnerability in the AutoVNF tool for the Cisco Ultra Services Framework could allow an unauthenticated, remote attacker to access administrative c…

Fix: after 5.0.2
Fix from $2,300 2017-07-06
Ultra Services Platform MEDIUM 5.5
CVE-2017-6694

A vulnerability in the Virtual Network Function Manager's (VNFM) logging function of Cisco Ultra Services Platform could allow an authenticated, loca…

Mitigation only
Fix from $1,600 2017-06-13