Vulnerability index

Browse CVEs

32 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Unified Communications Manager CRITICAL 9.8
CVE-2026-20045 KEV

A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME…

Fix: 14su5+
Fix from $2,300 2026-01-21
Adaptive Security Appliance Software MEDIUM 6.7
CVE-2024-20485

A vulnerability in the VPN web server of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could all…

Mitigation only
Fix from $1,600 2024-10-23
Adaptive Security Appliance Software MEDIUM 6.0
CVE-2024-20359 KEVEPSS 19%

A vulnerability in a legacy capability that allowed for the preloading of VPN clients and plug-ins and that has been available in Cisco Adaptive Secu…

Mitigation only
Fix from $1,600 2024-04-24
Secure Firewall Management Center HIGH 8.2
CVE-2023-20063

A vulnerability in the inter-device communication mechanisms between devices that are running Cisco Firepower Threat Defense (FTD) Software and devic…

Fix: after 7.3.1.1
Fix from $1,950 2023-11-01
Telepresence Video Communication Server HIGH 7.2
CVE-2023-20209EPSS 41%

A vulnerability in the web-based management interface of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow …

Fix: 14.3.1+
Fix from $1,950 2023-08-16
Firepower Device Manager On Box HIGH 8.8
CVE-2021-1518

A vulnerability in the REST API of Cisco Firepower Device Manager (FDM) On-Box Software could allow an authenticated, remote attacker to execute arbi…

Fix: 6.4.0 / 6.7.0.2+
Fix from $1,950 2021-07-22
Adaptive Security Device Manager HIGH 8.1
CVE-2021-1585EPSS 20%

A vulnerability in the Cisco Adaptive Security Device Manager (ASDM) Launcher could allow an unauthenticated, remote attacker to execute arbitrary co…

Fix: 7.18.1.152+
Fix from $1,950 2021-07-08
Prime License Manager HIGH 8.8
CVE-2021-1362

A vulnerability in the SOAP API endpoint of Cisco Unified Communications Manager, Cisco Unified Communications Manager Session Management Edition, Ci…

Fix: 11.5 / 12.5+
Fix from $1,950 2021-04-08
Ios Xe MEDIUM 6.7
CVE-2020-3513

Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS XE Software for Cisco ASR 900 Series Aggregation…

Mitigation only
Fix from $1,600 2020-09-24
Ios Xe MEDIUM 6.7
CVE-2020-3416

Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS XE Software for Cisco ASR 900 Series Aggregation…

Mitigation only
Fix from $1,600 2020-09-24
Ip Phone 8800 Series Firmware HIGH 8.8
CVE-2018-0461

A vulnerability in the Cisco IP Phone 8800 Series Software could allow an unauthenticated, remote attacker to conduct an arbitrary script injection a…

Mitigation only
Fix from $1,950 2019-01-10
Prime Infrastructure MEDIUM 5.4
CVE-2017-6782

A vulnerability in the administrative web interface of Cisco Prime Infrastructure could allow an authenticated, remote attacker to modify a page in t…

Mitigation only
Fix from $1,600 2017-08-17
Secure Firewall Management Center MEDIUM 6.5
CVE-2016-1413

The web interface in Cisco Firepower Management Center 5.4.0 through 6.0.0.1 allows remote authenticated users to modify pages by placing crafted cod…

Mitigation only
Fix from $1,600 2016-05-28
Rv120w Firmware HIGH 9.0
CVE-2014-2177

The network-diagnostics administration interface in the Cisco RV router firmware on RV220W devices, before 1.0.5.9 on RV120W devices, and before 1.0.…

Fix: after 1.0.5.8
Fix from $1,950 2014-11-07
Adaptive Security Appliance Software MEDIUM 5.5
CVE-2014-3399

The SSL VPN implementation in Cisco Adaptive Security Appliance (ASA) Software 9.2(.2.4) and earlier does not properly manage session information dur…

Fix: after 9.2
Fix from $1,600 2014-10-07
Wide Area Application Services HIGH 9.3
CVE-2014-2196

Cisco Wide Area Application Services (WAAS) 5.1.1 before 5.1.1e, when SharePoint prefetch optimization is enabled, allows remote SharePoint servers t…

Mitigation only
Fix from $1,950 2014-05-26
Telepresence Te Software HIGH 9.0
CVE-2014-2170

Cisco TelePresence TC Software 4.x and 5.x before 5.1.7 and 6.x before 6.0.1 and TE Software 4.x and 6.0 allow remote authenticated users to execute …

Mitigation only
Fix from $1,950 2014-05-02
Telepresence System Software HIGH 8.3
CVE-2014-0661

The System Status Collection Daemon (SSCD) in Cisco TelePresence System 500-37, 1000, 1300-65, and 3xxx before 1.10.2(42), and 500-32, 1300-47, TX131…

Fix: after 1.10.1
Fix from $1,950 2014-01-22
Unified Communications Manager MEDIUM 6.5
CVE-2013-3402

An unspecified function in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(2) allows remote authenticated users to execute arbitrary c…

Mitigation only
Fix from $1,600 2013-07-18
Ironport Asyncos HIGH 9.0
CVE-2013-3384

The web framework in IronPort AsyncOS on Cisco Web Security Appliance devices before 7.1.3-013, 7.5 before 7.5.0-838, and 7.7 before 7.7.0-550; Email…

Fix: after 7.1.3
Fix from $1,950 2013-06-27
Ironport Asyncos HIGH 9.0
CVE-2013-3383

The web framework in IronPort AsyncOS on Cisco Web Security Appliance devices before 7.1.3-013, 7.5 before 7.5.0-838, and 7.7 before 7.7.0-550 allows…

Fix: after 7.1.3
Fix from $1,950 2013-06-27
Telepresence Multipoint Switch Software HIGH 8.3
CVE-2012-2486

The Cisco Discovery Protocol (CDP) implementation on Cisco TelePresence Multipoint Switch before 1.9.0, Cisco TelePresence Immersive Endpoint Devices…

Fix: after 1.9.0.1
Fix from $1,950 2012-07-12
Adaptive Security Appliance Software MEDIUM 5.0
CVE-2011-3285

CRLF injection vulnerability in /+CSCOE+/logon.html on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.0 through 8.4 all…

Mitigation only
Fix from $1,600 2012-05-02
Small Business Srp520 Series Firmware HIGH 9.0
CVE-2012-0363

The web interface on Cisco SRP 520 series devices with firmware before 1.1.26 and SRP 520W-U and 540 series devices with firmware before 1.2.4 allows…

Fix: after 1.01.24
Fix from $1,950 2012-02-25
Digital Media Manager HIGH 9.0
CVE-2012-0329

Cisco Digital Media Manager 5.2.2 and earlier, and 5.2.3, allows remote authenticated users to execute arbitrary code via vectors involving a URL and…

Fix: after 5.2.2
Fix from $1,950 2012-01-19
Ciscoworks Common Services HIGH 9.0
CVE-2011-3310EPSS 15%

The Home Page component in Cisco CiscoWorks Common Services before 4.1 on Windows, as used in CiscoWorks LAN Management Solution, Cisco Security Mana…

Fix: after 4.0.1
Fix from $1,950 2011-10-20
Show And Share MEDIUM 6.5
CVE-2011-2585

Cisco Show and Share 5(2), 5.2(1), and 5.2(2) before 5.2(2.1) allows remote authenticated users to upload and execute arbitrary code by leveraging vi…

Fix: after 5.2
Fix from $1,600 2011-10-20
Rvs4000 HIGH 9.0
CVE-2011-1646

The web management interface on the Cisco RVS4000 Gigabit Security Router with software 1.x before 1.3.3.4 and 2.x before 2.0.2.7, and the WRVS4400N …

Mitigation only
Fix from $1,950 2011-05-31
Telepresence Recording Server Software HIGH 9.3
CVE-2011-0386

The XML-RPC implementation on Cisco TelePresence Recording Server devices with software 1.6.x and 1.7.x before 1.7.1 allows remote attackers to overw…

Mitigation only
Fix from $1,950 2011-02-25
Security Agent HIGH 10.0
CVE-2011-0364EPSS 20%

The Management Console (webagent.exe) in Cisco Security Agent 5.1, 5.2, and 6.0 before 6.0.2.145 allows remote attackers to create arbitrary files an…

Mitigation only
Fix from $1,950 2011-02-19