Vulnerability index

Browse CVEs

24 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect Permission AssignmentCWE-732 × clear
Ios Xr MEDIUM 6.7
CVE-2024-20456

A vulnerability in the boot process of Cisco IOS XR Software could allow an authenticated, local attacker with high privileges to bypass the Cisco Se…

Mitigation only
Fix from $1,600 2024-07-10
Sd Wan Manager HIGH 8.8
CVE-2023-20254

A vulnerability in the session management system of the Cisco Catalyst SD-WAN Manager multi-tenant feature could allow an authenticated, remote attac…

Fix: 20.6.3.4 / 20.9.3.2+
Fix from $1,950 2023-09-27
Firepower 9300 Firmware MEDIUM 6.3
CVE-2023-20200

A vulnerability in the Simple Network Management Protocol (SNMP) service of Cisco FXOS Software for Firepower 4100 Series and Firepower 9300 Security…

Fix: 4.1 / 4.2+
Fix from $1,600 2023-08-23
Firepower Extensible Operating System MEDIUM 6.0
CVE-2023-20234

A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to create a file or overwrite any file on the filesyst…

Mitigation only
Fix from $1,600 2023-08-23
Application Policy Infrastructure Controller MEDIUM 5.4
CVE-2023-20230

A vulnerability in the restricted security domain implementation of Cisco Application Policy Infrastructure Controller (APIC) could allow an authenti…

Fix: 5.2 / 6.0+
Fix from $1,600 2023-08-23
Broadworks Application Delivery Platform HIGH 7.8
CVE-2023-20216

A vulnerability in the privilege management functionality of all Cisco BroadWorks server types could allow an authenticated, local attacker to elevat…

Fix: 23.0.2023.05 / 24.0.2023.05+
Fix from $1,950 2023-08-03
Secure Firewall Management Center MEDIUM 5.5
CVE-2021-1126

A vulnerability in the storage of proxy server credentials of Cisco Firepower Management Center (FMC) could allow an authenticated, local attacker to…

Fix: 6.7.0+
Fix from $1,600 2021-01-13
Sd Wan HIGH 7.8
CVE-2020-3595

A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root group on the underlying operating…

Fix: 20.1.2 / 20.3.2+
Fix from $1,950 2020-11-06
Ios Xe MEDIUM 6.0
CVE-2020-3503

A vulnerability in the file system permissions of Cisco IOS XE Software could allow an authenticated, local attacker to obtain read and write access …

Mitigation only
Fix from $1,600 2020-09-24
Secure Firewall Management Center HIGH 7.5
CVE-2020-3312

A vulnerability in the application policy configuration of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attac…

Mitigation only
Fix from $1,950 2020-05-06
Jabber HIGH 7.8
CVE-2019-12645

A vulnerability in Cisco Jabber Client Framework (JCF) for Mac Software, installed as part of the Cisco Jabber for Mac client, could allow an authent…

Fix: 12.6+
Fix from $1,950 2019-09-05
Adaptive Security Appliance Software HIGH 7.3
CVE-2019-1944

Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to…

Fix: 9.4.4.37+
Fix from $1,950 2019-08-07
Nexus 9000 Series Application Centric Infrastructure MEDIUM 6.7
CVE-2019-1803

A vulnerability in the filesystem management for the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch Software could allo…

Mitigation only
Fix from $1,600 2019-05-03
Nx Os HIGH 7.8
CVE-2019-1618

A vulnerability in the Tetration Analytics agent for Cisco Nexus 9000 Series Switches in standalone NX-OS mode could allow an authenticated, local at…

Fix: 7.0+
Fix from $1,950 2019-03-11
Nx Os HIGH 7.8
CVE-2019-1601

A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated, local attacker to gain read and write access to a…

Fix: 6.0 / 6.2+
Fix from $1,950 2019-03-08
Nx Os HIGH 7.8
CVE-2019-1596

A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker to escalate their privilege le…

Fix: 7.0+
Fix from $1,950 2019-03-07
Prime Infrastructure CRITICAL 9.8
CVE-2018-15379EPSS 86%

A vulnerability in which the HTTP web server for Cisco Prime Infrastructure (PI) has unrestricted directory permissions could allow an unauthenticate…

No fix yet
Fix from $2,300 2018-10-05
Webex Meetings Online HIGH 7.3
CVE-2018-0422

A vulnerability in the folder permissions of Cisco Webex Meetings client for Windows could allow an authenticated, local attacker to modify locally s…

Fix: 1.3.37 / 32.15.20+
Fix from $1,950 2018-10-05
Mobility Services Engine 3365 Firmware MEDIUM 5.5
CVE-2018-0392

A vulnerability in the CLI of Cisco Policy Suite could allow an authenticated, local attacker to access files owned by another user. The vulnerabilit…

Mitigation only
Fix from $1,600 2018-07-18
Wide Area Application Services MEDIUM 6.7
CVE-2018-0352

A vulnerability in the Disk Check Tool (disk-check.sh) for Cisco Wide Area Application Services (WAAS) Software could allow an authenticated, local a…

Mitigation only
Fix from $1,600 2018-06-07
Policy Suite HIGH 7.5
CVE-2018-0089

A vulnerability in the Policy and Charging Rules Function (PCRF) of the Cisco Policy Suite (CPS) could allow an unauthenticated, remote attacker to a…

Mitigation only
Fix from $1,950 2018-01-18
Industrial Ethernet 4010 Series Firmware MEDIUM 6.7
CVE-2018-0088

A vulnerability in one of the diagnostic test CLI commands on Cisco Industrial Ethernet 4010 Series Switches running Cisco IOS Software could allow a…

Mitigation only
Fix from $1,600 2018-01-18
Dpc3939 Firmware CRITICAL 9.8
CVE-2017-9479

The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) devices allows remote attackers to execute arbitr…

No fix yet
Fix from $2,300 2017-07-31
Dpc3939 Firmware CRITICAL 9.8
CVE-2017-9482

The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) devices allows remote attackers to obtain root ac…

No fix yet
Fix from $2,300 2017-07-31