Vulnerability index

Browse CVEs

20 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness XML External Entity (XXE)CWE-611 × clear
MEDIUM 6.5 CVE-2020-26066 A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to in… Catalyst Sd Wan Manager Mitigation only Fix from $1,6002024-11-18 MEDIUM 6.4 CVE-2021-1483 A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to in… Catalyst Sd Wan Manager Mitigation only Fix from $1,6002024-11-15 MEDIUM 6.5 CVE-2024-20531 A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read arbitrary files on the underlying operating system of a… Identity Services Engine Mitigation only Fix from $1,6002024-11-06 HIGH 8.1 CVE-2020-26064 A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to informa… Catalyst Sd Wan Manager Mitigation only Fix from $1,9502023-08-04 MEDIUM 6.0 CVE-2023-20030 A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to access… Identity Services Engine 3.2+ Fix from $1,6002023-04-05 MEDIUM 5.3 CVE-2023-20052EPSS 7% On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed: A vulnerability in the DMG file parser of ClamAV vers… Secure Endpoint 1.20.2 / 1.21.1+ Fix from $1,6002023-03-01 HIGH 7.4 CVE-2022-20780EPSS 11% Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM… Enterprise Nfv Infrastructure Software 4.7.1+ Fix from $1,9502022-05-04 MEDIUM 5.4 CVE-2021-34706 A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to access… Identity Services Engine after 3.1 Fix from $1,6002021-10-06 HIGH 7.1 CVE-2021-1530 A vulnerability in the web-based management interface of Cisco BroadWorks Messaging Server Software could allow an authenticated, remote attacker to … Broadworks Messaging Server Mitigation only Fix from $1,9502021-05-06 MEDIUM 5.4 CVE-2021-1369 A vulnerability in the REST API of Cisco Firepower Device Manager (FDM) On-Box Software could allow an authenticated, remote attacker to gain read an… Firepower Device Manager 6.5.0.5 / 6.6.3+ Fix from $1,6002021-04-29 HIGH 7.3 CVE-2020-3405 A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to informa… Sd Wan Firmware after 19.2.2 Fix from $1,9502020-07-16 MEDIUM 6.5 CVE-2019-12711 A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Manager Session Management Editio… Unified Communications Manager Mitigation only Fix from $1,6002019-10-02 CRITICAL 9.1 CVE-2019-1903 A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to access sensitive information or cause a denial of servic… Security Manager Mitigation only Fix from $2,3002019-06-20 HIGH 7.3 CVE-2018-15444 A vulnerability in the web-based user interface of Cisco Energy Management Suite Software could allow an authenticated, remote attacker to gain read … Energy Management Suite Software No fix yet Fix from $1,9502018-11-08 MEDIUM 5.7 CVE-2018-0414 A vulnerability in the web-based UI of Cisco Secure Access Control Server could allow an authenticated, remote attacker to gain read access to certai… Secure Access Control Server Solution Engine 5.8+ Fix from $1,6002018-10-05 MEDIUM 5.3 CVE-2018-0108 A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to collect customer files via an out-of-band XML Exter… Webex Meetings Server Mitigation only Fix from $1,6002018-01-18 HIGH 8.8 CVE-2017-12216 A vulnerability in the web-based user interface of Cisco SocialMiner could allow an unauthenticated, remote attacker to have read and write access to… Socialminer Mitigation only Fix from $1,9502017-09-07 HIGH 8.0 CVE-2017-6662 A vulnerability in the web-based user interface of Cisco Prime Infrastructure (PI) and Evolved Programmable Network Manager (EPNM) could allow an aut… Evolved Programmable Network Manager Mitigation only Fix from $1,9502017-06-26 MEDIUM 6.5 CVE-2017-3811 An XML External Entity vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to have read access to part of the … Webex Meetings Server Mitigation only Fix from $1,6002017-03-17 HIGH 7.5 CVE-2016-6408 Cisco Prime Home 5.2.0 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction w… Prime Home Mitigation only Fix from $1,9502016-09-24