Vulnerability index

Browse CVEs

5,757 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Webex Meetings MEDIUM 6.1
CVE-2020-27126

A vulnerability in an API of Cisco Webex Meetings could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks. The vulner…

Mitigation only
Fix from $1,600 2020-11-18
Iot Field Network Director HIGH 8.8
CVE-2020-26075

A vulnerability in the REST API of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to gain access to the back-en…

Fix: 4.6.1+
Fix from $1,950 2020-11-18
Iot Field Network Director HIGH 8.7
CVE-2020-26072

A vulnerability in the SOAP API of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to access and modify informat…

Fix: 4.6.1+
Fix from $1,950 2020-11-18
Iot Field Network Director HIGH 7.5
CVE-2020-26076

A vulnerability in Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote attacker to view sensitive database information on a…

Fix: 4.6.1+
Fix from $1,950 2020-11-18
Roomos MEDIUM 6.5
CVE-2020-26068

A vulnerability in the xAPI service of Cisco Telepresence CE Software and Cisco RoomOS Software could allow an authenticated, remote attacker to gene…

Fix: 9.10.3 / 9.12.4+
Fix from $1,600 2020-11-18
Iot Field Network Director MEDIUM 6.5
CVE-2020-26078

A vulnerability in the file system of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to overwrite files on an a…

Fix: 4.6.1+
Fix from $1,600 2020-11-18
Security Manager CRITICAL 9.8
CVE-2020-27131EPSS 88%

Multiple vulnerabilities in the Java deserialization function that is used by Cisco Security Manager could allow an unauthenticated, remote attacker …

Fix: after 4.22
Fix from $2,300 2020-11-17
Security Manager CRITICAL 9.1
CVE-2020-27130EPSS 66%

A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability …

Fix: after 4.21
Fix from $2,300 2020-11-17
Security Manager CRITICAL 9.8
CVE-2020-27125

A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to access sensitive information on an affected system. The …

Fix: after 4.21
Fix from $2,300 2020-11-17
Ios Xr HIGH 8.6
CVE-2020-26070

A vulnerability in the ingress packet processing function of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers could allow…

Fix: 6.7.2 / 7.1.2+
Fix from $1,950 2020-11-12
Webex Meetings HIGH 7.8
CVE-2020-3588

A vulnerability in virtualization channel messaging in Cisco Webex Meetings Desktop App for Windows could allow a local attacker to execute arbitrary…

Fix: 40.6.9 / 40.8.9+
Fix from $1,950 2020-11-06
Sd Wan HIGH 7.8
CVE-2020-3593

A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating syste…

Fix: 20.1.2 / 20.3.1+
Fix from $1,950 2020-11-06
Sd Wan HIGH 7.8
CVE-2020-3594

A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating syste…

Fix: 20.1.2 / 20.3.2+
Fix from $1,950 2020-11-06
Sd Wan HIGH 7.8
CVE-2020-3595

A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root group on the underlying operating…

Fix: 20.1.2 / 20.3.2+
Fix from $1,950 2020-11-06
Sd Wan HIGH 7.8
CVE-2020-3600

A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating syste…

Fix: 20.1.2 / 20.3.2+
Fix from $1,950 2020-11-06
Webex Meetings HIGH 7.8
CVE-2020-3603

Multiple vulnerabilities in Cisco Webex Network Recording Player for Windows and Cisco Webex Player for Windows could allow an attacker to execute ar…

Fix: 40.6.11 / 40.8.0+
Fix from $1,950 2020-11-06
Webex Meetings HIGH 7.8
CVE-2020-3604

Multiple vulnerabilities in Cisco Webex Network Recording Player for Windows and Cisco Webex Player for Windows could allow an attacker to execute ar…

Fix: 40.6.11 / 40.8.0+
Fix from $1,950 2020-11-06
Catalyst Sd Wan Manager MEDIUM 6.5
CVE-2020-3592

A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypass author…

Fix: after 20.1.12
Fix from $1,600 2020-11-06
Catalyst Sd Wan Manager MEDIUM 6.4
CVE-2020-3587

A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct a…

Fix: after 20.1.12
Fix from $1,600 2020-11-06
Catalyst Sd Wan Manager MEDIUM 6.4
CVE-2020-3590

A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct a…

Fix: after 20.1.12
Fix from $1,600 2020-11-06
A9k Rsp880 Se Firmware CRITICAL 9.8
CVE-2020-3284

A vulnerability in the enhanced Preboot eXecution Environment (PXE) boot loader for Cisco IOS XR 64-bit Software could allow an unauthenticated, remo…

Fix: 1.12 / 1.21+
Fix from $2,300 2020-11-06
Integrated Management Controller HIGH 8.8
CVE-2020-3371

A vulnerability in the web UI of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to inject arbitrary code …

Fix: 3.0+
Fix from $1,950 2020-11-06
Webex Meetings HIGH 7.8
CVE-2020-3573

Multiple vulnerabilities in Cisco Webex Network Recording Player for Windows and Cisco Webex Player for Windows could allow an attacker to execute ar…

Fix: 40.6.11 / 40.8.0+
Fix from $1,950 2020-11-06
Ios Xe HIGH 7.5
CVE-2020-3444

A vulnerability in the packet filtering features of Cisco SD-WAN Software could allow an unauthenticated, remote attacker to bypass L3 and L4 traffic…

Fix: after 17.2.1
Fix from $1,950 2020-11-06
Ip Dect 210 Firmware HIGH 7.5
CVE-2020-3574EPSS 8%

A vulnerability in the TCP packet processing functionality of Cisco IP Phones could allow an unauthenticated, remote attacker to cause the phone to s…

Fix: 1.2.0 / 4.8.1+
Fix from $1,950 2020-11-06
Anyconnect Secure Mobility Client HIGH 7.3
CVE-2020-3556

A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client Software could allow an authenticated, loc…

Mitigation only
Fix from $1,950 2020-11-06
Identity Services Engine MEDIUM 6.1
CVE-2020-3551

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond…

Mitigation only
Fix from $1,600 2020-11-06
Catalyst Sd Wan Manager MEDIUM 6.1
CVE-2020-3579

A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to conduct a c…

Fix: after 20.1.12
Fix from $1,600 2020-11-06
Identity Services Engine MEDIUM 6.7
CVE-2020-27122

A vulnerability in the Microsoft Active Directory integration of Cisco Identity Services Engine (ISE) could allow an authenticated, local attacker to…

Fix: 3.0.0+
Fix from $1,600 2020-11-06
Sd Wan Vmanage MEDIUM 6.7
CVE-2020-27129

A vulnerability in the remote management feature of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to inject arbitrary co…

Fix: 20.3.1+
Fix from $1,600 2020-11-06