Vulnerability index

Browse CVEs

455 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
Data Center Network Manager MEDIUM 6.1
CVE-2020-3356

A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to …

Fix: after 11.3
Fix from $1,600 2020-06-18
Iox MEDIUM 5.4
CVE-2020-3233

A vulnerability in the web-based Local Manager interface of the Cisco IOx Application Framework could allow an authenticated, remote attacker to cond…

Fix: 1.9.0+
Fix from $1,600 2020-06-03
Secure Firewall Management Center MEDIUM 6.1
CVE-2020-3313

A vulnerability in the web UI of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a cross-…

Fix: 6.2.2.3+
Fix from $1,600 2020-05-06
Prime Collaboration Provisioning MEDIUM 6.1
CVE-2020-3192

A vulnerability in the web-based management interface of Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote attacker to co…

Fix: 12.6+
Fix from $1,600 2020-03-04
Telepresence Management Suite MEDIUM 5.4
CVE-2020-3185

A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) could allow an authenticated, remote attacker to c…

Fix: after 15.9
Fix from $1,600 2020-03-04
Identity Services Engine MEDIUM 5.4
CVE-2020-3157

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduc…

Fix: after 2.7
Fix from $1,600 2020-03-04
Identity Services Engine MEDIUM 6.1
CVE-2020-3156

A vulnerability in the logging component of Cisco Identity Services Engine could allow an unauthenticated remote attacker to conduct cross-site scrip…

Mitigation only
Fix from $1,600 2020-02-19
Finesse MEDIUM 6.1
CVE-2020-3159

A vulnerability in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to conduct a cross-site script…

Fix: 12.5+
Fix from $1,600 2020-02-19
Data Center Network Manager MEDIUM 5.4
CVE-2020-3113

A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to co…

Fix: 11.3+
Fix from $1,600 2020-02-19
Unified Communications Manager MEDIUM 6.1
CVE-2015-0749

A vulnerability in Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attac…

Fix: after 10.5
Fix from $1,600 2020-02-19
Linksys E4200 Firmware MEDIUM 6.1
CVE-2013-2684

Cross-site Scripting (XSS) in Cisco Linksys E4200 1.0.05 Build 7 devices allows remote attackers to inject arbitrary web script or HTML via unspecifi…

No fix yet
Fix from $1,600 2020-02-06
Sg250x 24 Firmware MEDIUM 6.1
CVE-2020-3121

A vulnerability in the web-based management interface of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attac…

Fix: after 2.5.0.90
Fix from $1,600 2020-01-26
Jabber Guest MEDIUM 6.1
CVE-2020-3136

A vulnerability in the web-based management interface of Cisco Jabber Guest could allow an unauthenticated, remote attacker to conduct a cross-site s…

Fix: after 11.1
Fix from $1,600 2020-01-26
Crosswork Change Automation MEDIUM 6.1
CVE-2019-16024

A vulnerability in the web-based management interface of Cisco Crosswork Change Automation could allow an unauthenticated, remote attacker to conduct…

Fix: 3.1+
Fix from $1,600 2020-01-26
Data Center Analytics Framework MEDIUM 6.1
CVE-2019-16015

A vulnerability in the web-based management interface of the Cisco Data Center Analytics Framework application could allow an unauthenticated, remote…

Fix: 8.3.7.5.4+
Fix from $1,600 2020-01-26
Ip Phone 6841 Firmware MEDIUM 5.4
CVE-2019-16008

A vulnerability in the web-based GUI of Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware could allow an authenticated, remote a…

Fix: 11.3+
Fix from $1,600 2020-01-26
Finesse MEDIUM 6.1
CVE-2019-15278

A vulnerability in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to bypass authorization and ac…

Mitigation only
Fix from $1,600 2020-01-26
Stealthwatch Enterprise MEDIUM 6.1
CVE-2019-15994

A vulnerability in the web-based management interface of Cisco Stealthwatch Enterprise could allow an unauthenticated, remote attacker to conduct a c…

Fix: 6.10.6+
Fix from $1,600 2019-11-26
Hosted Collaboration Solution MEDIUM 5.4
CVE-2019-15968

A vulnerability in the web-based management interface of Cisco Unified Communications Domain Manager (Unified CDM) could allow an authenticated, remo…

Mitigation only
Fix from $1,600 2019-11-26
Industrial Network Director MEDIUM 6.1
CVE-2019-15973

A vulnerability in the web-based management interface of Cisco Industrial Network Director (IND) could allow an unauthenticated, remote attacker to c…

Fix: 1.7.1-45+
Fix from $1,600 2019-11-26
Firepower Management Center Firmware MEDIUM 5.4
CVE-2019-15270

A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to c…

Fix: 6.5.0+
Fix from $1,600 2019-10-16
Telepresence Video Communication Server MEDIUM 6.1
CVE-2019-12705

A vulnerability in the web-based management interface of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow …

Mitigation only
Fix from $1,600 2019-10-16
Sf250 24 Firmware MEDIUM 6.1
CVE-2019-12718

A vulnerability in the web-based interface of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attacker to cond…

Fix: 2.5.0.90+
Fix from $1,600 2019-10-16
Identity Services Engine MEDIUM 5.4
CVE-2019-12637

Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker …

Fix: after 2.3
Fix from $1,600 2019-10-16
Identity Services Engine MEDIUM 5.4
CVE-2019-12638

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduc…

Fix: after 2.2.0
Fix from $1,600 2019-10-16
Spa112 Firmware MEDIUM 5.4
CVE-2019-12702

A vulnerability in the web-based management interface of Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote at…

Fix: 1.4.1+
Fix from $1,600 2019-10-16
Spa122 Firmware MEDIUM 5.2
CVE-2019-12703

A vulnerability in the web-based management interface of Cisco SPA122 ATA with Router Devices could allow an unauthenticated, adjacent attacker to co…

Fix: 1.4.1+
Fix from $1,600 2019-10-16
Unified Communications Manager MEDIUM 6.1
CVE-2019-12707

A vulnerability in the web-based interface of multiple Cisco Unified Communications products could allow an unauthenticated, remote attacker to condu…

Mitigation only
Fix from $1,600 2019-10-02
Prime Infrastructure MEDIUM 6.1
CVE-2019-12712

A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an unauthenticated, remote attacker to conduct a cros…

Mitigation only
Fix from $1,600 2019-10-02
Prime Infrastructure MEDIUM 6.1
CVE-2019-12713

A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an unauthenticated, remote attacker to conduct a cros…

Mitigation only
Fix from $1,600 2019-10-02