Vulnerability index

Browse CVEs

320 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness OS Command InjectionCWE-78 × clear
Firepower Management Center Virtual Appliance HIGH 7.8
CVE-2021-34756

Multiple vulnerabilities in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrar…

Fix: 6.4.0.13 / 6.6.5+
Fix from $1,950 2021-10-27
Ios Xe HIGH 7.8
CVE-2021-1529

A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbitrary commands with root privi…

Fix: 17.2.3 / 17.3.4+
Fix from $1,950 2021-10-21
Intersight Virtual Appliance HIGH 8.8
CVE-2021-34748

A vulnerability in the web-based management interface of Cisco Intersight Virtual Appliance could allow an authenticated, remote attacker to perform …

Fix: after 1.0.9-292
Fix from $1,950 2021-10-06
Ata 190 Firmware HIGH 8.8
CVE-2021-34710

Multiple vulnerabilities in the Cisco ATA 190 Series Analog Telephone Adapter Software could allow an attacker to perform a command injection attack …

Mitigation only
Fix from $1,950 2021-10-06
Identity Services Engine HIGH 8.1
CVE-2021-1594

A vulnerability in the REST API of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform a command injectio…

Fix: 2.6.0+
Fix from $1,950 2021-10-06
Ios Xe Sd Wan MEDIUM 6.7
CVE-2021-34725

A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitrary commands to be executed w…

Fix: after 17.2.1r
Fix from $1,600 2021-09-23
Sd Wan MEDIUM 6.7
CVE-2021-34726

A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to inject arbitrary commands to be executed with roo…

Fix: 18.4.6 / 19.2.3+
Fix from $1,600 2021-09-23
Ios Xe MEDIUM 6.7
CVE-2021-34729

A vulnerability in the CLI of Cisco IOS XE SD-WAN Software and Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrar…

Fix: after 17.3.1a
Fix from $1,600 2021-09-23
Ios Xr HIGH 7.8
CVE-2021-34719

Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker with a low-privileged account to elevate pr…

Fix: 7.3.2 / 7.4.1+
Fix from $1,950 2021-09-09
Ios Xr HIGH 7.8
CVE-2021-34728

Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker with a low-privileged account to elevate pr…

Fix: 7.3.2 / 7.4.1+
Fix from $1,950 2021-09-09
Ios Xr MEDIUM 6.7
CVE-2021-34721

Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to gain access to the underlying root shell…

Fix: 7.3.2 / 7.4.1+
Fix from $1,600 2021-09-09
Ios Xr MEDIUM 6.7
CVE-2021-34722

Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to gain access to the underlying root shell…

Fix: 7.3.2 / 7.4.1+
Fix from $1,600 2021-09-09
Nx Os MEDIUM 6.7
CVE-2021-1584

A vulnerability in Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an authenticated, local attac…

Patch available
Fix from $1,600 2021-08-25
Small Business Rv Series Router Firmware CRITICAL 9.8
CVE-2021-1602

A vulnerability in the web-based management interface of Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers could allow an una…

Fix: 1.0.01.04+
Fix from $2,300 2021-08-04
Intersight Virtual Appliance HIGH 7.2
CVE-2021-1618

Multiple vulnerabilities in the web-based management interface of Cisco Intersight Virtual Appliance could allow an authenticated, remote attacker to…

Fix: 1.0.9-292+
Fix from $1,950 2021-07-22
Common Services Platform Collector HIGH 7.2
CVE-2021-1538

A vulnerability in the configuration dashboard of Cisco Common Services Platform Collector (CSPC) could allow an authenticated, remote attacker to ex…

Fix: 2.9.1+
Fix from $1,950 2021-06-04
Evolved Programmable Network Manager HIGH 8.8
CVE-2021-1487

A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Evolved Programmable Network (EPN) Manager could allow an aut…

Fix: 3.9 / 5.1+
Fix from $1,950 2021-05-22
Dna Spaces\ HIGH 7.2
CVE-2021-1559

Multiple vulnerabilities in Cisco DNA Spaces Connector could allow an authenticated, remote attacker to perform a command injection attack on an affe…

Fix: 2.0.519+
Fix from $1,950 2021-05-22
Dna Spaces\ HIGH 7.2
CVE-2021-1560

Multiple vulnerabilities in Cisco DNA Spaces Connector could allow an authenticated, remote attacker to perform a command injection attack on an affe…

Fix: 2.0.519+
Fix from $1,950 2021-05-22
Dna Spaces\ MEDIUM 6.7
CVE-2021-1557

Multiple vulnerabilities in Cisco DNA Spaces Connector could allow an authenticated, local attacker to elevate privileges and execute arbitrary comma…

Fix: 2.3.1+
Fix from $1,600 2021-05-22
Dna Spaces\ MEDIUM 6.7
CVE-2021-1558

Multiple vulnerabilities in Cisco DNA Spaces Connector could allow an authenticated, local attacker to elevate privileges and execute arbitrary comma…

Fix: 2.3.1+
Fix from $1,600 2021-05-22
Hyperflex Hx Data Platform CRITICAL 9.8
CVE-2021-1497 KEVEPSS 100%

Multiple vulnerabilities in the web-based management interface of Cisco HyperFlex HX could allow an unauthenticated, remote attacker to perform comma…

Fix: 4.0 / 4.5+
Fix from $2,300 2021-05-06
Hyperflex Hx Data Platform CRITICAL 9.8
CVE-2021-1498 KEVEPSS 100%

Multiple vulnerabilities in the web-based management interface of Cisco HyperFlex HX could allow an unauthenticated, remote attacker to perform comma…

Fix: 4.0 / 4.5+
Fix from $2,300 2021-05-06
Enterprise Nfv Infrastructure Software HIGH 7.8
CVE-2021-1421

A vulnerability in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to perform a command injection a…

Fix: 4.5.1+
Fix from $1,950 2021-05-06
Catalyst Sd Wan Manager HIGH 7.8
CVE-2021-1514

A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to inject arbitrary commands to be executed with Adm…

Fix: 18.3 / 20.1.1+
Fix from $1,950 2021-05-06
Wap125 Firmware HIGH 7.2
CVE-2021-1401

Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could …

Fix: after 1.1.2.4
Fix from $1,950 2021-05-06
Secure Firewall Threat Defense HIGH 7.8
CVE-2021-1448

A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary command…

Fix: 6.4.0.10 / 6.5.0.5+
Fix from $1,950 2021-04-29
Secure Firewall Threat Defense MEDIUM 6.7
CVE-2021-1476

A vulnerability in the CLI of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authe…

Fix: 6.6.4 / 6.7.0.2+
Fix from $1,600 2021-04-29
Secure Firewall Threat Defense MEDIUM 6.7
CVE-2021-1488

A vulnerability in the upgrade process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could al…

Fix: 6.6.4 / 6.7.0.2+
Fix from $1,600 2021-04-29
Rv340 Firmware CRITICAL 9.8
CVE-2021-1473EPSS 64%

Multiple vulnerabilities exist in the web-based management interface of Cisco Small Business RV Series Routers. A remote attacker could execute arbit…

Fix: 1.0.03.21+
Fix from $2,300 2021-04-08