Vulnerability index

Browse CVEs

33 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
Intersight Device Connector HIGH 8.2
CVE-2026-5944

An improper access control vulnerability exists in the Cisco Intersight Device Connector for Nutanix Prism Central. The service exposes an API passth…

Fix: after 7.5.0
Fix from $1,950 2026-04-28
Evolved Programmable Network Manager HIGH 8.0
CVE-2026-20155

A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attac…

Fix: 8.1.2+
Fix from $1,950 2026-04-01
Adaptive Security Appliance Software HIGH 8.6
CVE-2025-20362 KEVEPSS 87%

Update: On November 5, 2025, Cisco became aware of a new attack variant against devices running Cisco Secure ASA Software or Cisco Secure FTD Softwar…

Fix: 7.0.8.1 / 7.2.10.2+
Fix from $1,950 2025-09-25
Secure Firewall Management Center MEDIUM 6.5
CVE-2025-20301

A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, low-privileged, remote attacker to a…

Mitigation only
Fix from $1,600 2025-08-14
Identity Services Engine HIGH 7.2
CVE-2025-20125EPSS 17%

A vulnerability in an API of Cisco ISE could allow an authenticated, remote attacker with valid read-only credentials to obtain sensitive information…

Fix: 3.1+
Fix from $1,950 2025-02-05
Ata 191 Firmware HIGH 7.1
CVE-2024-20463

A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remot…

Fix: 11.2.5 / 12.0.2+
Fix from $1,950 2024-10-16
Nexus Dashboard MEDIUM 5.4
CVE-2024-20477

A vulnerability in a specific REST API endpoint of Cisco NDFC could allow an authenticated, low-privileged, remote attacker to upload or delete files…

Fix: 3.2 / 12.2.2+
Fix from $1,600 2024-10-02
Nexus Dashboard MEDIUM 5.4
CVE-2024-20442

A vulnerability in the REST API endpoints of Cisco Nexus Dashboard could allow an authenticated, low-privileged, remote attacker to perform limited A…

Fix: 3.2+
Fix from $1,600 2024-10-02
Nexus Dashboard MEDIUM 5.4
CVE-2024-20438

A vulnerability in the REST API endpoints of Cisco NDFC could allow an authenticated, low-privileged, remote attacker to read or write files on an af…

Fix: 3.2 / 12.2.2+
Fix from $1,600 2024-10-02
Adaptive Security Appliance Software MEDIUM 5.0
CVE-2024-20355

A vulnerability in the implementation of SAML 2.0 single sign-on (SSO) for remote access VPN services in Cisco Adaptive Security Appliance (ASA) Soft…

Mitigation only
Fix from $1,600 2024-05-22
Catalyst Sd Wan Manager CRITICAL 9.8
CVE-2023-20252

A vulnerability in the Security Assertion Markup Language (SAML) APIs of Cisco Catalyst SD-WAN Manager Software could allow an unauthenticated, remot…

Mitigation only
Fix from $2,300 2023-09-27
Secure Firewall Management Center MEDIUM 5.3
CVE-2022-20941

A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote atta…

Mitigation only
Fix from $1,600 2022-11-15
Appdynamics Controller MEDIUM 5.3
CVE-2022-20736

A vulnerability in the web-based management interface of Cisco AppDynamics Controller Software could allow an unauthenticated, remote attacker to acc…

Fix: 21.4.7+
Fix from $1,600 2022-06-15
Catalyst Sd Wan Manager HIGH 8.8
CVE-2021-1505

Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to…

Fix: 20.3.3 / 20.4.1+
Fix from $1,950 2021-05-06
Catalyst Sd Wan Manager HIGH 8.8
CVE-2021-1508

Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to…

Fix: 19.2.99 / 20.3.3+
Fix from $1,950 2021-05-06
Catalyst Sd Wan Manager HIGH 7.2
CVE-2021-1506

Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to…

Fix: 20.3.3 / 20.4.1+
Fix from $1,950 2021-05-06
Ios Xe Rom Monitor MEDIUM 6.8
CVE-2020-3524

A vulnerability in the Cisco IOS XE ROM Monitor (ROMMON) Software for Cisco 4000 Series Integrated Services Routers, Cisco ASR 920 Series Aggregation…

Fix: 15.6 / 16.2+
Fix from $1,600 2020-09-24
Ios Xe HIGH 8.8
CVE-2020-3400

A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to utilize parts of the web UI for which…

Mitigation only
Fix from $1,950 2020-09-24
Nx Os HIGH 7.8
CVE-2020-3394

A vulnerability in the Enable Secret feature of Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches in standalone NX-OS mode could …

Mitigation only
Fix from $1,950 2020-08-27
Smart Software Manager On Prem HIGH 8.8
CVE-2020-3443

A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated, remote attacker to elevate privileges and execute…

Mitigation only
Fix from $1,950 2020-08-26
Smart Software Manager On Prem MEDIUM 5.3
CVE-2020-3245

A vulnerability in the web application of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to creat…

Fix: 8-202004+
Fix from $1,600 2020-06-18
Ios Xr MEDIUM 5.3
CVE-2019-15998

A vulnerability in the access-control logic of the NETCONF over Secure Shell (SSH) of Cisco IOS XR Software may allow connections despite an access c…

Mitigation only
Fix from $1,600 2019-11-26
Hyperflex Hx Data Platform MEDIUM 5.3
CVE-2018-15429

A vulnerability in the web-based UI of Cisco HyperFlex HX Data Platform Software could allow an unauthenticated, remote attacker to access sensitive …

Mitigation only
Fix from $1,600 2018-10-05
Prime Collaboration HIGH 8.8
CVE-2018-0336

A vulnerability in the batch provisioning feature of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker to escalate…

Mitigation only
Fix from $1,950 2018-06-07
Prime Collaboration HIGH 8.8
CVE-2018-0317

A vulnerability in the web interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attacker to escalate their …

Fix: after 12.2
Fix from $1,950 2018-06-07
Prime Collaboration HIGH 8.8
CVE-2018-0322

A vulnerability in the web management interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attacker to modi…

Fix: after 12.1
Fix from $1,950 2018-06-07
Nx Os HIGH 7.1
CVE-2018-0092

A vulnerability in the network-operator user role implementation for Cisco NX-OS System Software could allow an authenticated, local attacker to impr…

Mitigation only
Fix from $1,950 2018-01-18
Elastic Services Controller MEDIUM 5.5
CVE-2017-6693

A vulnerability in the ConfD server component of Cisco Elastic Services Controllers could allow an authenticated, local attacker to access informatio…

Mitigation only
Fix from $1,600 2017-06-13
Prime Data Center Network Manager CRITICAL 9.8
CVE-2017-6639EPSS 35%

A vulnerability in the role-based access control (RBAC) functionality of Cisco Prime Data Center Network Manager (DCNM) could allow an unauthenticate…

Mitigation only
Fix from $2,300 2017-06-08
Prime Collaboration Provisioning MEDIUM 6.5
CVE-2017-6635EPSS 10%

A vulnerability in the web interface of Cisco Prime Collaboration Provisioning Software (prior to Release 12.1) could allow an authenticated, remote …

Mitigation only
Fix from $1,600 2017-05-22