Vulnerability index

Browse CVEs

22 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness InjectionCWE-74 × clear
CRITICAL 9.8 CVE-2026-20272 As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehen… Ios Xe No fix yet Fix from $2,3002026-08-05 MEDIUM 6.3 CVE-2026-20220 A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could allow an authenticated, remote attacker to exe… Crosswork Network Controller 7.1.3+ Fix from $1,6002026-06-17 HIGH 7.2 CVE-2026-20199 A vulnerability in the SSL certificate handling of Cisco ThousandEyes Virtual Appliance could allow an authenticated, remote attacker to execute comm… Thousandeyes Virtual Appliance 0.262.0+ Fix from $1,9502026-05-20 CRITICAL 10.0 CVE-2025-20265EPSS 15% A vulnerability in the RADIUS subsystem implementation of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remo… Secure Firewall Management Center Mitigation only Fix from $2,3002025-08-14 CRITICAL 10.0 CVE-2025-20337 KEVEPSS 66% A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the und… Identity Services Engine Mitigation only Fix from $2,3002025-07-16 HIGH 7.2 CVE-2025-20284EPSS 13% A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary code on the under… Identity Services Engine 3.3.0+ Fix from $1,9502025-07-16 HIGH 7.2 CVE-2025-20283EPSS 7% A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary code on the under… Identity Services Engine 3.3.0+ Fix from $1,9502025-07-16 CRITICAL 10.0 CVE-2025-20281 KEVEPSS 97% A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the und… Identity Services Engine Mitigation only Fix from $2,3002025-06-25 HIGH 7.2 CVE-2025-20256 A vulnerability in the web-based management interface of Cisco Secure Network Analytics Manager and Cisco Secure Network Analytics Virtual Manager co… Secure Network Analytics Mitigation only Fix from $1,9502025-05-21 HIGH 7.2 CVE-2024-20429 A vulnerability in the web-based management interface of Cisco AsyncOS for Secure Email Gateway could allow an authenticated, remote attacker to exec… Asyncos Mitigation only Fix from $1,9502024-07-17 MEDIUM 5.3 CVE-2023-20057 A vulnerability in the URL filtering mechanism of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, rem… Asyncos Mitigation only Fix from $1,6002023-01-20 MEDIUM 5.3 CVE-2022-20772 A vulnerability in Cisco Email Security Appliance (ESA) and Cisco Secure Email and Web Manager could allow an unauthenticated, remote attacker to con… Email Security Appliance Firmware 14.0.3-015 / 14.2.0-217+ Fix from $1,6002022-11-04 HIGH 7.2 CVE-2022-20693 A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to perform an injection attack against a… Ios Xe Mitigation only Fix from $1,9502022-04-15 HIGH 7.3 CVE-2021-1432 A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbitrary commands on the underlyi… Ios Xe Mitigation only Fix from $1,9502021-03-24 MEDIUM 6.1 CVE-2020-26081 Multiple vulnerabilities in the web UI of Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote attacker to conduct cross-sit… Iot Field Network Director 4.6.1+ Fix from $1,6002020-11-18 HIGH 8.1 CVE-2013-2678EPSS 17% Cisco Linksys E4200 1.0.05 Build 7 routers contain a Local File Include Vulnerability which could allow remote attackers to obtain sensitive informat… Linksys E4200 Firmware No fix yet Fix from $1,9502020-02-04 HIGH 7.2 CVE-2011-2538 Cisco Video Communications Server (VCS) before X7.0.3 contains a command injection vulnerability which allows remote, authenticated attackers to exec… Telepresence Video Communication Server Mitigation only Fix from $1,9502019-10-29 MEDIUM 6.1 CVE-2019-15259 A vulnerability in Cisco Unified Contact Center Express (UCCX) Software could allow an unauthenticated, remote attacker to conduct an HTTP response s… Unified Contact Center Express 11.6+ Fix from $1,6002019-10-02 HIGH 8.8 CVE-2019-1939 A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affec… Webex Teams 3.0.12427.0+ Fix from $1,9502019-09-05 HIGH 8.8 CVE-2018-0313 A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, remote attacker to send a malicious packet to the managem… Nx Os Mitigation only Fix from $1,9502018-06-21 MEDIUM 6.7 CVE-2017-6748 A vulnerability in the CLI parser of the Cisco Web Security Appliance (WSA) could allow an authenticated, local attacker to perform command injection… Web Security Appliance Mitigation only Fix from $1,6002017-07-25 MEDIUM 6.5 CVE-2016-6473 A vulnerability in Cisco IOS on Catalyst Switches and Nexus 9300 Series Switches could allow an unauthenticated, adjacent attacker to cause a Layer 2… iOS Mitigation only Fix from $1,6002016-12-14