Vulnerability index

Browse CVEs

5,746 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Umbrella Virtual Appliance MEDIUM 6.0
CVE-2026-20246

A vulnerability in the vmadmin CLI of Cisco Umbrella Virtual Appliance could allow an authenticated, local attacker to elevate privileges on an affec…

Fix: 3.8.5+
Fix from $1,600 2026-06-17
Identity Services Engine CRITICAL 9.1
CVE-2026-20181

A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating syst…

Fix: 3.3.0+
Fix from $2,300 2026-06-17
Catalyst Sd Wan Manager MEDIUM 6.5
CVE-2026-20262 KEVEPSS 28%

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker to create a fi…

Fix: 20.9.9.2 / 20.12.7.2+
Fix from $1,600 2026-06-15
Catalyst Sd Wan Manager HIGH 7.8
CVE-2026-20245 KEVEPSS 25%

A vulnerability in the CLI of Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, and C…

Fix: 20.9.9.1 / 20.12.5.4+
Fix from $1,950 2026-06-04
Unified Communications Manager HIGH 8.6
CVE-2026-20230 KEVEPSS 83%

A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM …

Fix: 14su6+
Fix from $1,950 2026-06-03
Webex Meetings MEDIUM 6.1
CVE-2026-20233

A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to conduct a cross-sit…

Mitigation only
Fix from $1,600 2026-06-03
Secure Workload CRITICAL 10.0
CVE-2026-20223

A vulnerability in the access validation of internal REST APIs of Cisco Secure Workload could allow an unauthenticated, remote attacker to acces…

Fix: 3.10.8.3 / 4.0.3.17+
Fix from $2,300 2026-05-20
Thousandeyes Virtual Appliance HIGH 7.2
CVE-2026-20199

A vulnerability in the SSL certificate handling of Cisco ThousandEyes Virtual Appliance could allow an authenticated, remote attacker to execute comm…

Fix: 0.262.0+
Fix from $1,950 2026-05-20
Catalyst Sd Wan Manager HIGH 8.6
CVE-2026-20224

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to read arbi…

Fix: 20.9.9.1 / 20.12.5.4+
Fix from $1,950 2026-05-14
Catalyst Sd Wan Manager MEDIUM 5.4
CVE-2026-20210

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker with read-only…

Fix: 20.9.9.1 / 20.12.5.4+
Fix from $1,600 2026-05-14
Catalyst Sd Wan Manager CRITICAL 10.0
CVE-2026-20182 KEVEPSS 92%

May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fixed after the was disclosed …

Fix: 20.9.9.1 / 20.12.5.4+
Fix from $2,300 2026-05-14
Catalyst Sd Wan Manager MEDIUM 5.4
CVE-2026-20209

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker with read-only…

Fix: 20.9.9.1 / 20.12.5.4+
Fix from $1,600 2026-05-14
Identity Services Engine MEDIUM 5.3
CVE-2026-20195

A vulnerability in an identity management API endpoint of Cisco ISE could allow an unauthenticated, remote attacker to enumerate valid user accounts …

Fix: after 3.2.0
Fix from $1,600 2026-05-06
Unity Connection HIGH 8.8
CVE-2026-20034

A vulnerability in the web-based management interface of Cisco Unity Connection could allow an authenticated, remote attacker to execute arbitrary co…

Fix: 14.0+
Fix from $1,950 2026-05-06
Iot Field Network Director HIGH 7.7
CVE-2026-20167

A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low priv…

Fix: 5.0.0-117+
Fix from $1,950 2026-05-06
Unity Connection HIGH 7.2
CVE-2026-20035

A vulnerability in the web UI of Cisco Unity Connection Web Inbox could allow an unauthenticated, remote attacker to conduct SSRF attacks through an …

Fix: 14.0+
Fix from $1,950 2026-05-06
Iot Field Network Director MEDIUM 6.5
CVE-2026-20168

A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low priv…

Fix: 5.0.0-117+
Fix from $1,600 2026-05-06
Iot Field Network Director MEDIUM 6.4
CVE-2026-20169

A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low priv…

Fix: 5.0.0-117+
Fix from $1,600 2026-05-06
Intersight Device Connector HIGH 8.2
CVE-2026-5944

An improper access control vulnerability exists in the Cisco Intersight Device Connector for Nutanix Prism Central. The service exposes an API passth…

Fix: after 7.5.0
Fix from $1,950 2026-04-28
Identity Services Engine CRITICAL 9.9
CVE-2026-20180EPSS 6%

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying…

Fix: 3.2.0+
Fix from $2,300 2026-04-15
Identity Services Engine CRITICAL 9.9
CVE-2026-20186EPSS 6%

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying…

Fix: 3.2.0+
Fix from $2,300 2026-04-15
Webex Contact Center MEDIUM 6.1
CVE-2026-20170

A vulnerability in the Desktop Agent functionality of Cisco Webex Contact Center could have allowed an unauthenticated, remote attacker to conduct cr…

Mitigation only
Fix from $1,600 2026-04-15
Identity Services Engine Passive Identity Connector CRITICAL 9.9
CVE-2026-20147EPSS 12%

A vulnerability in Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operatin…

Fix: 3.1.0+
Fix from $2,300 2026-04-15
Identity Services Engine MEDIUM 6.0
CVE-2026-20136

A vulnerability in the CLI of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticat…

Fix: 3.3.0+
Fix from $1,600 2026-04-15
Unity Connection MEDIUM 6.5
CVE-2026-20061

A vulnerability in the web-based management interface of Cisco Unity Connection could allow an authenticated, remote attacker to perform an SQL injec…

Fix: after 12.5
Fix from $1,600 2026-04-15
Unity Connection MEDIUM 6.5
CVE-2026-20078

Multiple vulnerabilities in Cisco Unity Connection could allow an authenticated, remote attacker to download arbitrary files from an affected sy…

Fix: after 12.5
Fix from $1,600 2026-04-15
Unity Connection MEDIUM 6.5
CVE-2026-20081

Multiple vulnerabilities in Cisco Unity Connection could allow an authenticated, remote attacker to download arbitrary files from an affected sy…

Fix: after 12.5
Fix from $1,600 2026-04-15
Unity Connection MEDIUM 6.1
CVE-2026-20059

A vulnerability in the web-based management interface of Cisco Unity Connection could allow an unauthenticated, remote attacker to conduct a reflecte…

Fix: after 12.5
Fix from $1,600 2026-04-15
Smart Software Manager On Prem CRITICAL 9.8
CVE-2026-20160

A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to execute arbitrary commands o…

Fix: 9-202601+
Fix from $2,300 2026-04-01
Evolved Programmable Network Manager HIGH 8.0
CVE-2026-20155

A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attac…

Fix: 8.1.2+
Fix from $1,950 2026-04-01