Vulnerability index

Browse CVEs

22 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness InjectionCWE-74 × clear
Ios Xe CRITICAL 9.8
CVE-2026-20272

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehen…

No fix yet
Fix from $2,300 2026-08-05
Crosswork Network Controller MEDIUM 6.3
CVE-2026-20220

A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could allow an authenticated, remote attacker to exe…

Fix: 7.1.3+
Fix from $1,600 2026-06-17
Thousandeyes Virtual Appliance HIGH 7.2
CVE-2026-20199

A vulnerability in the SSL certificate handling of Cisco ThousandEyes Virtual Appliance could allow an authenticated, remote attacker to execute comm…

Fix: 0.262.0+
Fix from $1,950 2026-05-20
Secure Firewall Management Center CRITICAL 10.0
CVE-2025-20265EPSS 15%

A vulnerability in the RADIUS subsystem implementation of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remo…

Mitigation only
Fix from $2,300 2025-08-14
Identity Services Engine CRITICAL 10.0
CVE-2025-20337 KEVEPSS 66%

A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the und…

Mitigation only
Fix from $2,300 2025-07-16
Identity Services Engine HIGH 7.2
CVE-2025-20284EPSS 13%

A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary code on the under…

Fix: 3.3.0+
Fix from $1,950 2025-07-16
Identity Services Engine HIGH 7.2
CVE-2025-20283EPSS 7%

A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary code on the under…

Fix: 3.3.0+
Fix from $1,950 2025-07-16
Identity Services Engine CRITICAL 10.0
CVE-2025-20281 KEVEPSS 97%

A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the und…

Mitigation only
Fix from $2,300 2025-06-25
Secure Network Analytics HIGH 7.2
CVE-2025-20256

A vulnerability in the web-based management interface of Cisco Secure Network Analytics Manager and Cisco Secure Network Analytics Virtual Manager co…

Mitigation only
Fix from $1,950 2025-05-21
Asyncos HIGH 7.2
CVE-2024-20429

A vulnerability in the web-based management interface of Cisco AsyncOS for Secure Email Gateway could allow an authenticated, remote attacker to exec…

Mitigation only
Fix from $1,950 2024-07-17
Asyncos MEDIUM 5.3
CVE-2023-20057

A vulnerability in the URL filtering mechanism of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, rem…

Mitigation only
Fix from $1,600 2023-01-20
Email Security Appliance Firmware MEDIUM 5.3
CVE-2022-20772

A vulnerability in Cisco Email Security Appliance (ESA) and Cisco Secure Email and Web Manager could allow an unauthenticated, remote attacker to con…

Fix: 14.0.3-015 / 14.2.0-217+
Fix from $1,600 2022-11-04
Ios Xe HIGH 7.2
CVE-2022-20693

A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to perform an injection attack against a…

Mitigation only
Fix from $1,950 2022-04-15
Ios Xe HIGH 7.3
CVE-2021-1432

A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbitrary commands on the underlyi…

Mitigation only
Fix from $1,950 2021-03-24
Iot Field Network Director MEDIUM 6.1
CVE-2020-26081

Multiple vulnerabilities in the web UI of Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote attacker to conduct cross-sit…

Fix: 4.6.1+
Fix from $1,600 2020-11-18
Linksys E4200 Firmware HIGH 8.1
CVE-2013-2678EPSS 17%

Cisco Linksys E4200 1.0.05 Build 7 routers contain a Local File Include Vulnerability which could allow remote attackers to obtain sensitive informat…

No fix yet
Fix from $1,950 2020-02-04
Telepresence Video Communication Server HIGH 7.2
CVE-2011-2538

Cisco Video Communications Server (VCS) before X7.0.3 contains a command injection vulnerability which allows remote, authenticated attackers to exec…

Mitigation only
Fix from $1,950 2019-10-29
Unified Contact Center Express MEDIUM 6.1
CVE-2019-15259

A vulnerability in Cisco Unified Contact Center Express (UCCX) Software could allow an unauthenticated, remote attacker to conduct an HTTP response s…

Fix: 11.6+
Fix from $1,600 2019-10-02
Webex Teams HIGH 8.8
CVE-2019-1939

A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affec…

Fix: 3.0.12427.0+
Fix from $1,950 2019-09-05
Nx Os HIGH 8.8
CVE-2018-0313

A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, remote attacker to send a malicious packet to the managem…

Mitigation only
Fix from $1,950 2018-06-21
Web Security Appliance MEDIUM 6.7
CVE-2017-6748

A vulnerability in the CLI parser of the Cisco Web Security Appliance (WSA) could allow an authenticated, local attacker to perform command injection…

Mitigation only
Fix from $1,600 2017-07-25
iOS MEDIUM 6.5
CVE-2016-6473

A vulnerability in Cisco IOS on Catalyst Switches and Nexus 9300 Series Switches could allow an unauthenticated, adjacent attacker to cause a Layer 2…

Mitigation only
Fix from $1,600 2016-12-14