Vulnerability index

Browse CVEs

5,751 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Encs 5100 Firmware MEDIUM 6.1
CVE-2023-20228

A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker…

Fix: 3.2.15.1 / 4.3.2.230207+
Fix from $1,600 2023-08-16
Unified Communications Manager MEDIUM 6.1
CVE-2023-20242

A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unified CM Session Management Editi…

Mitigation only
Fix from $1,600 2023-08-16
Catalyst Sd Wan Manager MEDIUM 6.5
CVE-2020-26065

A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct path …

Mitigation only
Fix from $1,600 2023-08-04
Asyncos MEDIUM 5.3
CVE-2020-26082

A vulnerability in the zip decompression engine of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, re…

Fix: 13.5.2+
Fix from $1,600 2023-08-04
Catalyst Sd Wan Manager HIGH 8.1
CVE-2020-26064

A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to informa…

Mitigation only
Fix from $1,950 2023-08-04
Catalyst Sd Wan Manager CRITICAL 9.1
CVE-2023-20214

A vulnerability in the request authentication validation for the REST API of Cisco SD-WAN vManage software could allow an unauthenticated, remote att…

Fix: 20.6.4.2 / 20.6.5.5+
Fix from $2,300 2023-08-03
Broadworks Application Delivery Platform HIGH 7.8
CVE-2023-20216

A vulnerability in the privilege management functionality of all Cisco BroadWorks server types could allow an authenticated, local attacker to elevat…

Fix: 23.0.2023.05 / 24.0.2023.05+
Fix from $1,950 2023-08-03
Spa500ds Firmware MEDIUM 6.1
CVE-2023-20218

A vulnerability in web-based management interface of Cisco SPA500 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote attack…

Mitigation only
Fix from $1,600 2023-08-03
Broadworks Application Delivery Platform MEDIUM 5.4
CVE-2023-20204

A vulnerability in the web-based management interface of Cisco BroadWorks CommPilot Application Software could allow an authenticated, remote attacke…

Fix: 23.0.2023.08 / 24.0.2023.08+
Fix from $1,600 2023-08-03
Asyncos MEDIUM 5.3
CVE-2023-20215

A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthenticated, remote attacker to b…

No fix yet
Fix from $1,600 2023-08-03
Spa500ds Firmware MEDIUM 6.1
CVE-2023-20181

A vulnerability in the web-based management interface of Cisco Small Business SPA500 Series IP Phones could allow an unauthenticated, remote attacker…

Mitigation only
Fix from $1,600 2023-08-03
Cjose HIGH 7.5
CVE-2023-37464

OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). The AES GCM decryption routine incorrectly uses the Ta…

Fix: 0.6.2.2+
Fix from $1,950 2023-07-14
Nx Os HIGH 7.4
CVE-2023-20185

A vulnerability in the Cisco ACI Multi-Site CloudSec encryption feature of Cisco Nexus 9000 Series Fabric Switches in ACI mode could allow an unauthe…

Mitigation only
Fix from $1,950 2023-07-12
Broadworks Application Delivery Platform Firmware MEDIUM 6.0
CVE-2023-20210

A vulnerability in Cisco BroadWorks could allow an authenticated, local attacker to elevate privileges to the root user on an affected device. The…

Mitigation only
Fix from $1,600 2023-07-12
Webex Meetings MEDIUM 5.4
CVE-2023-20133

A vulnerability in the web interface of Cisco Webex Meetings could allow an authenticated, remote attacker to conduct a stored cross-site scripting (…

Mitigation only
Fix from $1,600 2023-07-07
Telepresence Video Communication Server HIGH 7.7
CVE-2023-20192

Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated attacker wit…

Mitigation only
Fix from $1,950 2023-06-28
Duo MEDIUM 6.6
CVE-2023-20199

A vulnerability in Cisco Duo Two-Factor Authentication for macOS could allow an authenticated, physical attacker to bypass secondary authentication a…

Fix: 2.0.2+
Fix from $1,600 2023-06-28
Anyconnect Secure Mobility Client HIGH 7.8
CVE-2023-20178EPSS 5%

A vulnerability in the client update process of Cisco AnyConnect Secure Mobility Client Software for Windows and Cisco Secure Client Software for Win…

Fix: 4.10.07061 / 5.0.02075+
Fix from $1,950 2023-06-28
Secure Firewall Threat Defense HIGH 7.5
CVE-2023-20006

A vulnerability in the hardware-based SSL/TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Thre…

Mitigation only
Fix from $1,950 2023-06-28
Unified Communications Manager Im And Presence Service HIGH 7.5
CVE-2023-20108

A vulnerability in the XCP Authentication Service of the Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P) could a…

Mitigation only
Fix from $1,950 2023-06-28
Telepresence Video Communication Server MEDIUM 6.5
CVE-2023-20105

A vulnerability in the change password functionality of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow a…

Mitigation only
Fix from $1,600 2023-06-28
Secure Workload MEDIUM 6.5
CVE-2023-20136

A vulnerability in the OpenAPI of Cisco Secure Workload could allow an authenticated, remote attacker with the privileges of a read-only user to exec…

Fix: 3.7.1.40+
Fix from $1,600 2023-06-28
Secure Email And Web Manager MEDIUM 6.1
CVE-2023-20119

A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager, formerly known as Content Sec…

Mitigation only
Fix from $1,600 2023-06-28
Secure Email And Web Manager MEDIUM 6.1
CVE-2023-20120

Multiple vulnerabilities in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager; Cisco Secure Email G…

Mitigation only
Fix from $1,600 2023-06-28
Unified Communications Manager MEDIUM 5.7
CVE-2023-20116

A vulnerability in the Administrative XML Web Service (AXL) API of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications…

Mitigation only
Fix from $1,600 2023-06-28
Secure Email And Web Manager MEDIUM 5.4
CVE-2023-20028

Multiple vulnerabilities in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager; Cisco Secure Email G…

Mitigation only
Fix from $1,600 2023-06-28
Business 250 16p 2g Firmware CRITICAL 9.8
CVE-2023-20189EPSS 11%

Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attac…

Mitigation only
Fix from $2,300 2023-05-18
Catalyst Center HIGH 8.8
CVE-2023-20182

Multiple vulnerabilities in the API of Cisco DNA Center Software could allow an authenticated, remote attacker to read information from a restricted …

Fix: 2.3.3.7 / 2.3.5.3+
Fix from $1,950 2023-05-18
Business 250 16p 2g Firmware CRITICAL 9.8
CVE-2023-20157

Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attac…

Mitigation only
Fix from $2,300 2023-05-18
Business 250 16p 2g Firmware CRITICAL 9.8
CVE-2023-20158

Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attac…

Mitigation only
Fix from $2,300 2023-05-18