Vulnerability index

Browse CVEs

5,746 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Adaptive Security Appliance Software HIGH 7.7
CVE-2026-20014

A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an authenticated, remote attacke…

Fix: 7.0.9 / 7.2.11+
Fix from $1,950 2026-03-04
Adaptive Security Appliance Software MEDIUM 5.8
CVE-2026-20013

A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an unauthenticated, remote attac…

Fix: 7.2.11 / 7.4.3+
Fix from $1,600 2026-03-04
Adaptive Security Appliance Software MEDIUM 5.8
CVE-2026-20015

A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an unauthenticated, remote attac…

Fix: 7.2.11 / 7.4.3+
Fix from $1,600 2026-03-04
Adaptive Security Appliance Software MEDIUM 6.0
CVE-2026-20008

A vulnerability in a small subset of CLI commands that are used on Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure …

Fix: 7.0.9 / 7.2.11+
Fix from $1,600 2026-03-04
Adaptive Security Appliance Software MEDIUM 5.3
CVE-2026-20009

A vulnerability in the implementation of the proprietary SSH stack with SSH key-based authentication in Cisco Secure Firewall Adaptive Security Appli…

Fix: 9.18.4.71 / 9.20.4.10+
Fix from $1,600 2026-03-04
Secure Firewall Management Center HIGH 8.1
CVE-2026-20002

A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injec…

Fix: after 7.7.10.1
Fix from $1,950 2026-03-04
Catalyst Sd Wan Manager CRITICAL 9.8
CVE-2026-20129

A vulnerability in the API user authentication of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain access to an …

Fix: 20.9.8.2 / 20.12.5.3+
Fix from $2,300 2026-02-25
Catalyst Sd Wan Manager HIGH 7.5
CVE-2026-20128 KEVEPSS 7%

A vulnerability in the Data Collection Agent (DCA) feature of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain D…

Fix: 20.9.8.2 / 20.12.5.3+
Fix from $1,950 2026-02-25
Catalyst Sd Wan Manager HIGH 7.5
CVE-2026-20133 KEVEPSS 31%

A vulnerability in Cisco Catalyst SD-WAN Software could allow an unauthenticated, remote attacker to view sensitive information on an affected system…

Fix: 20.9.8.2 / 20.12.5.3+
Fix from $1,950 2026-02-25
Catalyst Sd Wan Manager CRITICAL 10.0
CVE-2026-20127 KEVEPSS 88%

A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD…

Fix: 20.9.8.2 / 20.12.5.3+
Fix from $2,300 2026-02-25
Catalyst Sd Wan Manager HIGH 7.8
CVE-2026-20126

A vulnerability in Cisco Catalyst SD-WAN Manager could allow an authenticated, local attacker with low privileges to gain root privileges on the unde…

Fix: 20.9.8.2 / 20.12.5.3+
Fix from $1,950 2026-02-25
Catalyst Sd Wan Manager MEDIUM 5.4
CVE-2026-20122 KEVEPSS 25%

A vulnerability in the API of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to overwrite arbitrary files on the local f…

Fix: 20.9.8.2 / 20.12.5.3+
Fix from $1,600 2026-02-25
Skill Scanner CRITICAL 9.1
CVE-2026-26057

Skill Scanner is a security scanner for AI Agent Skills that detects prompt injection, data exfiltration, and malicious code patterns. A vulnerabilit…

Fix: 1.0.2+
Fix from $2,300 2026-02-19
Meeting Management HIGH 8.8
CVE-2026-20098

A vulnerability in the Certificate Management feature of Cisco Meeting Management could allow an authenticated, remote attacker to upload arbitrary f…

Fix: 3.12.1+
Fix from $1,950 2026-02-04
Evolved Programmable Network Manager MEDIUM 6.1
CVE-2026-20123

A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Prime Infrastructure could allow…

Fix: 3.10.6 / 8.1.1+
Fix from $1,600 2026-02-04
Unified Communications Manager CRITICAL 9.8
CVE-2026-20045 KEV

A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME…

Fix: 14su5+
Fix from $2,300 2026-01-21
Asyncos CRITICAL 10.0
CVE-2025-20393 KEVEPSS 30%

A vulnerability in the Spam Quarantine feature of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Email and Web Manager could …

Fix: 15.0.2-007 / 15.0.5-016+
Fix from $2,300 2025-12-17
Catalyst Center MEDIUM 6.1
CVE-2025-20353

A vulnerability in the web-based management interface of Cisco Catalyst Center could allow an unauthenticated, remote attacker to conduct a cross-sit…

Fix: 2.3.7.10+
Fix from $1,600 2025-11-13
Catalyst Center HIGH 8.8
CVE-2025-20349

A vulnerability in the REST API of Cisco Catalyst Center could allow an authenticated, remote attacker to execute arbitrary commands in a restricted …

Fix: 2.3.7.10+
Fix from $1,950 2025-11-13
Unified Contact Center Express CRITICAL 9.8
CVE-2025-20358

A vulnerability in the Contact Center Express (CCX) Editor application of Cisco Unified CCX could allow an unauthenticated, remote attacker to bypass…

Fix: 12.5+
Fix from $2,300 2025-11-05
Unified Contact Center Express HIGH 7.2
CVE-2025-20375

A vulnerability in the web UI of Cisco Unified CCX could allow an authenticated, remote attacker to upload and execute arbitrary files. This vulne…

Fix: 12.5+
Fix from $1,950 2025-11-05
Unified Contact Center Express HIGH 7.2
CVE-2025-20376

A vulnerability in the web UI of Cisco Unified CCX could allow an authenticated, remote attacker to upload and execute arbitrary files. This vulne…

Fix: 12.5+
Fix from $1,950 2025-11-05
Unified Contact Center Express CRITICAL 9.8
CVE-2025-20354

A vulnerability in the Java Remote Method Invocation (RMI) process of Cisco Unified CCX could allow an unauthenticated, remote attacker to upload arb…

Fix: 12.5+
Fix from $2,300 2025-11-05
Identity Services Engine HIGH 7.5
CVE-2025-20343

A vulnerability in the RADIUS setting Reject RADIUS requests from clients with repeated failures on Cisco Identity Services Engine (ISE) could allow …

No fix yet
Fix from $1,950 2025-11-05
Identity Services Engine MEDIUM 5.4
CVE-2025-20303

Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduc…

Fix: after 3.1.0
Fix from $1,600 2025-11-05
Identity Services Engine MEDIUM 5.4
CVE-2025-20304

Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduc…

Fix: after 3.1.0
Fix from $1,600 2025-11-05
Identity Services Engine MEDIUM 5.4
CVE-2025-20289

Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduc…

Fix: after 3.1.0
Fix from $1,600 2025-11-05
Desk Phone 9871 Firmware MEDIUM 6.1
CVE-2025-20351

A vulnerability in the web UI of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 running Cisco SIP Soft…

Fix: 14.3+
Fix from $1,600 2025-10-15
Desk Phone 9871 Firmware HIGH 7.5
CVE-2025-20350

A vulnerability in the web UI of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 running Cisco SIP Soft…

Fix: 14.3+
Fix from $1,950 2025-10-15
Cyber Vision Center MEDIUM 5.4
CVE-2025-20357

A vulnerability in the web-based management interface of Cisco Cyber Vision Center could allow an authenticated, remote attacker to conduct cross-sit…

Mitigation only
Fix from $1,600 2025-10-01