Vulnerability index

Browse CVEs

5,751 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Business 150ax Firmware MEDIUM 6.5
CVE-2023-20112

A vulnerability in Cisco access point (AP) software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on…

Fix: 10.3.2.0+
Fix from $1,600 2023-03-23
Catalyst Center HIGH 8.8
CVE-2023-20055

A vulnerability in the management API of Cisco DNA Center could allow an authenticated, remote attacker to elevate privileges in the context of the w…

Fix: 2.3.3.6+
Fix from $1,950 2023-03-23
Ios Xe HIGH 8.6
CVE-2023-20072

A vulnerability in the fragmentation handling code of tunnel protocol packets in Cisco IOS XE Software could allow an unauthenticated, remote attacke…

Mitigation only
Fix from $1,950 2023-03-23
Ios Xe Sd Wan HIGH 7.8
CVE-2023-20035

A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbitrary commands with elevated p…

Mitigation only
Fix from $1,950 2023-03-23
Ios Xe HIGH 7.8
CVE-2023-20065

A vulnerability in the Cisco IOx application hosting subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privi…

Mitigation only
Fix from $1,950 2023-03-23
iOS HIGH 7.5
CVE-2023-20080

A vulnerability in the IPv6 DHCP version 6 (DHCPv6) relay and server features of Cisco IOS and IOS XE Software could allow an unauthenticated, remote…

Mitigation only
Fix from $1,950 2023-03-23
Ios Xe MEDIUM 6.8
CVE-2023-20082

A vulnerability in Cisco IOS XE Software for Cisco Catalyst 9300 Series Switches could allow an authenticated, local attacker with level-15 privilege…

Fix: 17.3.7 / 17.6.5+
Fix from $1,600 2023-03-23
Catalyst Center MEDIUM 6.5
CVE-2023-20059

A vulnerability in the implementation of the Cisco Network Plug-and-Play (PnP) agent of Cisco DNA Center could allow an authenticated, remote attacke…

Fix: 2.3.3.7 / 2.3.5.0+
Fix from $1,600 2023-03-23
Ios Xe MEDIUM 6.5
CVE-2023-20066

A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to perform a directory traversal and access reso…

Mitigation only
Fix from $1,600 2023-03-23
Ios Xe MEDIUM 6.5
CVE-2023-20067

A vulnerability in the HTTP-based client profiling feature of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticate…

Mitigation only
Fix from $1,600 2023-03-23
Adaptive Security Appliance Software MEDIUM 5.9
CVE-2023-20081

A vulnerability in the IPv6 DHCP (DHCPv6) client module of Cisco Adaptive Security Appliance (ASA) Software, Cisco Firepower Threat Defense (FTD) Sof…

Mitigation only
Fix from $1,600 2023-03-23
Wireless Lan Controller Software MEDIUM 5.5
CVE-2023-20056

A vulnerability in the management CLI of Cisco access point (AP) software could allow an authenticated, local attacker to cause a denial of service (…

Fix: 8.10.183.0 / 16.12.8+
Fix from $1,600 2023-03-23
Ios Xe HIGH 8.6
CVE-2023-20027

A vulnerability in the implementation of the IPv4 Virtual Fragmentation Reassembly (VFR) feature of Cisco IOS XE Software could allow an unauthentica…

Mitigation only
Fix from $1,950 2023-03-23
Ios Xe HIGH 7.8
CVE-2023-20029

A vulnerability in the Meraki onboarding feature of Cisco IOS XE Software could allow an authenticated, local attacker to gain root level privileges …

Mitigation only
Fix from $1,950 2023-03-23
Enterprise Nfv Infrastructure Software HIGH 7.8
CVE-2022-20929

A vulnerability in the upgrade signature verification of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, local a…

Fix: 4.9.1+
Fix from $1,950 2023-03-10
Ios Xr HIGH 7.5
CVE-2023-20049

A vulnerability in the bidirectional forwarding detection (BFD) hardware offload feature of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregati…

Fix: 7.5.3 / 7.6.2+
Fix from $1,950 2023-03-09
Ip Phone 6871 Firmware CRITICAL 9.8
CVE-2023-20078EPSS 10%

Multiple vulnerabilities in the web-based management interface of certain Cisco IP Phones could allow an unauthenticated, remote attacker to execute …

Fix: 11.3.7sr1+
Fix from $2,300 2023-03-03
Ip Phone 6871 Firmware HIGH 7.5
CVE-2023-20079EPSS 10%

Multiple vulnerabilities in the web-based management interface of certain Cisco IP Phones could allow an unauthenticated, remote attacker to execute …

Fix: 11.3.7sr1+
Fix from $1,950 2023-03-03
Finesse HIGH 7.5
CVE-2023-20088

A vulnerability in the nginx configurations that are provided as part of the VPN-less reverse proxy for Cisco Finesse could allow an unauthenticated,…

Fix: 12.6+
Fix from $1,950 2023-03-03
Webex Teams MEDIUM 6.1
CVE-2023-20104

A vulnerability in the file upload functionality of Cisco Webex App for Web could allow an unauthenticated, remote attacker to conduct a cross-site s…

Mitigation only
Fix from $1,600 2023-03-03
Evolved Programmable Network Manager MEDIUM 5.4
CVE-2023-20069

A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager could allow …

Fix: 3.10.3 / 7.0+
Fix from $1,600 2023-03-03
Packaged Contact Center Enterprise MEDIUM 6.5
CVE-2023-20061

Multiple vulnerabilities in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to collect sensitive information or perfo…

Fix: 12.6+
Fix from $1,600 2023-03-03
Email Security Appliance MEDIUM 6.7
CVE-2023-20075

Vulnerability in the CLI of Cisco Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrary commands. These vulnerab…

Fix: 12.5.3-041 / 13.0.5-007+
Fix from $1,600 2023-03-01
Nexus Dashboard MEDIUM 6.1
CVE-2023-20053

A vulnerability in the web-based management interface of Cisco Nexus Dashboard could allow an unauthenticated, remote attacker to conduct a cross-sit…

Fix: 2.3+
Fix from $1,600 2023-03-01
Identity Services Engine MEDIUM 6.1
CVE-2023-20085

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond…

Mitigation only
Fix from $1,600 2023-03-01
Secure Endpoint CRITICAL 9.8
CVE-2023-20032EPSS 29%

On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed: A vulnerability in the HFS+ partition file parser of …

Fix: 1.20.2 / 1.21.1+
Fix from $2,300 2023-03-01
Nexus Dashboard HIGH 7.5
CVE-2023-20014

A vulnerability in the DNS functionality of Cisco Nexus Dashboard Software could allow an unauthenticated, remote attacker to cause a denial of servi…

Fix: 2.3+
Fix from $1,950 2023-03-01
Email Security Appliance HIGH 7.2
CVE-2023-20009

A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow…

Fix: 12.5.3-041 / 12.8.1-021+
Fix from $1,950 2023-03-01
Secure Endpoint MEDIUM 5.3
CVE-2023-20052EPSS 7%

On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed: A vulnerability in the DMG file parser of ClamAV vers…

Fix: 1.20.2 / 1.21.1+
Fix from $1,600 2023-03-01
Asyncos MEDIUM 5.3
CVE-2022-20952

A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance, formerly known as Cisco Web Security Appliance (WSA…

Fix: 14.0.4+
Fix from $1,600 2023-03-01