Vulnerability index

Browse CVEs

137 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
Iot Field Network Director MEDIUM 6.4
CVE-2026-20169

A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low priv…

Fix: 5.0.0-117+
Fix from $1,600 2026-05-06
Identity Services Engine CRITICAL 9.9
CVE-2026-20186EPSS 6%

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying…

Fix: 3.2.0+
Fix from $2,300 2026-04-15
Identity Services Engine Passive Identity Connector CRITICAL 9.9
CVE-2026-20147EPSS 12%

A vulnerability in Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operatin…

Fix: 3.1.0+
Fix from $2,300 2026-04-15
Finesse MEDIUM 6.7
CVE-2025-20278

A vulnerability in the CLI of multiple Cisco Unified Communications products could allow an authenticated, local attacker to execute arbitrary comman…

Fix: 12.6+
Fix from $1,600 2025-06-04
Duo MEDIUM 5.4
CVE-2025-20258

A vulnerability in the self-service portal of Cisco Duo could allow an unauthenticated, remote attacker to inject arbitrary commands into emails that…

Mitigation only
Fix from $1,600 2025-05-21
Application Policy Infrastructure Controller MEDIUM 6.7
CVE-2025-20117

A vulnerability in the CLI of Cisco APIC could allow an authenticated, local attacker to execute arbitrary commands as root on the underlying op…

Mitigation only
Fix from $1,600 2025-02-26
Asyncos HIGH 7.2
CVE-2025-20184

A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Web Appliance could a…

Mitigation only
Fix from $1,950 2025-02-05
Telepresence Video Communication Server MEDIUM 6.7
CVE-2024-20492

A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perform command injection attacks …

Mitigation only
Fix from $1,600 2024-10-02
Nexus Dashboard Fabric Controller HIGH 8.8
CVE-2024-20432

A vulnerability in the REST API and web UI of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, low-privileged, remote att…

Fix: 12.2.2+
Fix from $1,950 2024-10-02
Unified Computing System HIGH 7.2
CVE-2024-20365

A vulnerability in the Redfish API of Cisco UCS B-Series, Cisco UCS Managed C-Series, and Cisco UCS X-Series Servers could allow an authenticated, re…

Mitigation only
Fix from $1,950 2024-10-02
Confd Basic HIGH 7.8
CVE-2024-20326

A vulnerability in the ConfD CLI and the Cisco Crosswork Network Services Orchestrator CLI could allow an authenticated, low-privileged, local attac…

Fix: 5.4 / 5.5+
Fix from $1,950 2024-05-16
Wap371 Firmware HIGH 7.2
CVE-2024-20287

A vulnerability in the web-based management interface of the Cisco WAP371 Wireless-AC/N Dual Radio Access Point (AP) with Single Point Setup could al…

Mitigation only
Fix from $1,950 2024-01-17
Secure Firewall Management Center HIGH 8.8
CVE-2023-20219

Multiple vulnerabilities in the web management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote att…

Fix: after 7.3.1.1
Fix from $1,950 2023-11-01
Secure Firewall Management Center HIGH 8.8
CVE-2023-20220

Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remo…

Fix: after 7.3.1.1
Fix from $1,950 2023-11-01
Identity Services Engine MEDIUM 6.7
CVE-2023-20170

A vulnerability in a specific Cisco ISE CLI command could allow an authenticated, local attacker to perform command injection attacks on the underlyi…

Mitigation only
Fix from $1,600 2023-11-01
Intersight Private Virtual Appliance CRITICAL 9.1
CVE-2023-20017

Multiple vulnerabilities in Cisco Intersight Private Virtual Appliance could allow an authenticated, remote attacker to execute arbitrary commands us…

Mitigation only
Fix from $2,300 2023-08-16
Intersight Private Virtual Appliance CRITICAL 9.1
CVE-2023-20013

Multiple vulnerabilities in Cisco Intersight Private Virtual Appliance could allow an authenticated, remote attacker to execute arbitrary commands us…

Mitigation only
Fix from $2,300 2023-08-16
Telepresence Video Communication Server HIGH 7.2
CVE-2023-20209EPSS 41%

A vulnerability in the web-based management interface of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow …

Fix: 14.3.1+
Fix from $1,950 2023-08-16
Rv016 Firmware HIGH 7.2
CVE-2023-20118 KEVEPSS 54%

A vulnerability in the web-based management interface of Cisco Small Business Routers RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could all…

Mitigation only
Fix from $1,950 2023-04-13
Identity Services Engine MEDIUM 6.7
CVE-2023-20153

Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform comman…

Mitigation only
Fix from $1,600 2023-04-05
Identity Services Engine HIGH 7.8
CVE-2023-20122

Multiple vulnerabilities in the restricted shell of Cisco Evolved Programmable Network Manager (EPNM), Cisco Identity Services Engine (ISE), and Cisc…

Mitigation only
Fix from $1,950 2023-04-05
Evolved Programmable Network Manager MEDIUM 6.7
CVE-2023-20121

Multiple vulnerabilities in the restricted shell of Cisco Evolved Programmable Network Manager (EPNM), Cisco Identity Services Engine (ISE), and Cisc…

Fix: 3.10.4 / 7.0.1+
Fix from $1,600 2023-04-05
Identity Services Engine MEDIUM 6.7
CVE-2023-20152

Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform comman…

Mitigation only
Fix from $1,600 2023-04-05
Rv016 Firmware HIGH 7.2
CVE-2023-20124

A vulnerability in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an au…

Mitigation only
Fix from $1,950 2023-04-05
Wireless Lan Controller Software MEDIUM 6.7
CVE-2023-20097

A vulnerability in Cisco access points (AP) software could allow an authenticated, local attacker to inject arbitrary commands and execute them with …

Fix: 8.10.183.0 / 16.12.8+
Fix from $1,600 2023-03-23
Email Security Appliance MEDIUM 6.7
CVE-2023-20075

Vulnerability in the CLI of Cisco Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrary commands. These vulnerab…

Fix: 12.5.3-041 / 13.0.5-007+
Fix from $1,600 2023-03-01
Rv160 Vpn Router Firmware HIGH 7.2
CVE-2023-20045

A vulnerability in the web-based management interface of Cisco Small Business RV160 and RV260 Series VPN Routers could allow an authenticated, remote…

Fix: 1.0.01.04+
Fix from $1,950 2023-01-20
Rv016 Firmware HIGH 7.2
CVE-2023-20026

A vulnerability in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320 and RV325 Routers could allow an aut…

Mitigation only
Fix from $1,950 2023-01-20
Secure Firewall Threat Defense MEDIUM 6.7
CVE-2022-20934

A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software and Cisco FXOS Software could allow an authenticated, local attacker to e…

Fix: after 7.0.4
Fix from $1,600 2022-11-15
Secure Firewall Management Center HIGH 8.8
CVE-2022-20926

A vulnerability in the web management interface of the Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker…

Mitigation only
Fix from $1,950 2022-11-15