Vulnerability index

Browse CVEs

5,751 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Meraki Systems Manager HIGH 7.3
CVE-2024-20430

A vulnerability in Cisco Meraki Systems Manager (SM) Agent for Windows could allow an authenticated, local attacker to execute arbitrary code with el…

Fix: 4.2.0+
Fix from $1,950 2024-09-12
Ios Xr HIGH 7.4
CVE-2024-20406

A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS XR Software could all…

Fix: 7.0.0 / 7.11.2+
Fix from $1,950 2024-09-11
Ios Xr HIGH 7.2
CVE-2024-20483

Multiple vulnerabilities in Cisco Routed PON Controller Software, which runs as a docker container on hardware that is supported by Cisco IOS XR Soft…

Mitigation only
Fix from $1,950 2024-09-11
Ios Xr MEDIUM 5.5
CVE-2024-20489

A vulnerability in the storage method of the PON Controller configuration file could allow an authenticated, local attacker with low privileges to ob…

Mitigation only
Fix from $1,600 2024-09-11
Ios Xr HIGH 8.8
CVE-2024-20381

A vulnerability in the JSON-RPC API feature in Cisco Crosswork Network Services Orchestrator (NSO) and ConfD that is used by the web-based management…

Mitigation only
Fix from $1,950 2024-09-11
Ios Xr HIGH 7.8
CVE-2024-20398

A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to obtain read/write file system access on the under…

Mitigation only
Fix from $1,950 2024-09-11
Ios Xr HIGH 7.4
CVE-2024-20317

A vulnerability in the handling of specific Ethernet frames by Cisco IOS XR Software for various Cisco Network Convergence System (NCS) platforms cou…

Mitigation only
Fix from $1,950 2024-09-11
Ios Xr MEDIUM 5.5
CVE-2024-20343

A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to read any file in the file system of the underlyin…

Mitigation only
Fix from $1,600 2024-09-11
Ios Xr MEDIUM 5.3
CVE-2024-20390

A vulnerability in the Dedicated XML Agent feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of serv…

Fix: 24.1.2+
Fix from $1,600 2024-09-11
Ios Xr HIGH 7.5
CVE-2024-20304

A vulnerability in the multicast traceroute version 2 (Mtrace2) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to e…

Mitigation only
Fix from $1,950 2024-09-11
Duo Authentication For Epic MEDIUM 5.5
CVE-2024-20503

A vulnerability in Cisco Duo Epic for Hyperdrive could allow an authenticated, local attacker to view sensitive information in cleartext on an affect…

Mitigation only
Fix from $1,600 2024-09-04
Smart License Utility CRITICAL 9.8
CVE-2024-20439 KEVEPSS 92%

A vulnerability in Cisco Smart Licensing Utility (CSLU) could allow an unauthenticated, remote attacker to log into an affected system by using a sta…

Fix: 2.3.0+
Fix from $2,300 2024-09-04
Smart License Utility HIGH 7.5
CVE-2024-20440EPSS 52%

A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker to access sensitive information. This vulnerabili…

Mitigation only
Fix from $1,950 2024-09-04
Identity Services Engine MEDIUM 6.7
CVE-2024-20469

A vulnerability in specific CLI commands in Cisco Identity Services Engine (ISE) could allow an authenticated, local attacker to perform command inje…

Mitigation only
Fix from $1,600 2024-09-04
Application Policy Infrastructure Controller HIGH 7.2
CVE-2024-20478

A vulnerability in the software upgrade component of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Network Controlle…

Mitigation only
Fix from $1,950 2024-08-28
Nx Os HIGH 8.8
CVE-2024-20286

A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, low-privileged, local attacker to escape the Python s…

Mitigation only
Fix from $1,950 2024-08-28
Nx Os HIGH 8.8
CVE-2024-20285

A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, low-privileged, local attacker to escape the Python s…

Mitigation only
Fix from $1,950 2024-08-28
Nx Os HIGH 8.8
CVE-2024-20284

A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, low-privileged, local attacker to escape the Python s…

Mitigation only
Fix from $1,950 2024-08-28
Identity Services Engine HIGH 8.8
CVE-2024-20486

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond…

Fix: 3.1+
Fix from $1,950 2024-08-21
Identity Services Engine HIGH 8.1
CVE-2024-20417

Multiple vulnerabilities in the REST API of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct blind SQL i…

Fix: after 3.1
Fix from $1,950 2024-08-21
Unified Communications Manager MEDIUM 6.1
CVE-2024-20488

A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager S…

Mitigation only
Fix from $1,600 2024-08-21
Unified Communications Manager HIGH 7.5
CVE-2024-20375

A vulnerability in the SIP call processing function of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Ses…

Mitigation only
Fix from $1,950 2024-08-21
Spa 301 Firmware CRITICAL 9.8
CVE-2024-20450EPSS 7%

Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series…

Mitigation only
Fix from $2,300 2024-08-07
Spa 301 Firmware CRITICAL 9.8
CVE-2024-20454EPSS 7%

Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series…

Mitigation only
Fix from $2,300 2024-08-07
Spa 301 Firmware HIGH 7.5
CVE-2024-20451

Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series…

Mitigation only
Fix from $1,950 2024-08-07
Identity Services Engine MEDIUM 5.4
CVE-2024-20443

A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to conduct an XSS attack against a u…

No fix yet
Fix from $1,600 2024-08-07
Smart Software Manager On Prem CRITICAL 10.0
CVE-2024-20419EPSS 81%

A vulnerability in the authentication system of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to…

Fix: 8-202112+
Fix from $2,300 2024-07-17
Asyncos HIGH 7.8
CVE-2024-20435

A vulnerability in the CLI of Cisco AsyncOS for Secure Web Appliance could allow an authenticated, local attacker to execute arbitrary commands and e…

Mitigation only
Fix from $1,950 2024-07-17
Asyncos HIGH 7.2
CVE-2024-20429

A vulnerability in the web-based management interface of Cisco AsyncOS for Secure Email Gateway could allow an authenticated, remote attacker to exec…

Mitigation only
Fix from $1,950 2024-07-17
Secure Email Gateway CRITICAL 9.8
CVE-2024-20401

A vulnerability in the content scanning and message filtering features of Cisco Secure Email Gateway could allow an unauthenticated, remote attacker …

Fix: 15.5.1-055+
Fix from $2,300 2024-07-17