Vulnerability index

Browse CVEs

5,746 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Spaces Connector MEDIUM 6.7
CVE-2025-20308

A vulnerability in Cisco Spaces Connector could allow an authenticated, local attacker to elevate privileges and execute arbitrary commands on the un…

Mitigation only
Fix from $1,600 2025-07-02
Identity Services Engine CRITICAL 10.0
CVE-2025-20282EPSS 27%

A vulnerability in an internal API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to upload arbitrary files to an aff…

Mitigation only
Fix from $2,300 2025-06-25
Identity Services Engine CRITICAL 10.0
CVE-2025-20281 KEVEPSS 97%

A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the und…

Mitigation only
Fix from $2,300 2025-06-25
Identity Services Engine MEDIUM 6.4
CVE-2025-20264

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to bypass…

Mitigation only
Fix from $1,600 2025-06-25
Secure Endpoint HIGH 7.5
CVE-2025-20234

A vulnerability in Universal Disk Format (UDF) processing of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS…

Fix: 1.4.3 / 1.26.1+
Fix from $1,950 2025-06-18
Identity Services Engine CRITICAL 9.8
CVE-2025-20286

A vulnerability in Amazon Web Services (AWS), Microsoft Azure, and Oracle Cloud Infrastructure (OCI) cloud deployments of Cisco Identity Services Eng…

Mitigation only
Fix from $2,300 2025-06-04
Unified Contact Center Express HIGH 7.8
CVE-2025-20275

A vulnerability in the file opening process of Cisco Unified Contact Center Express (Unified CCX) Editor could allow an unauthenticated attacker to e…

Mitigation only
Fix from $1,950 2025-06-04
Unified Contact Center Express HIGH 7.2
CVE-2025-20276

A vulnerability in the web-based management interface of Cisco Unified CCX could allow an authenticated, remote attacker to execute arbitrary code on…

Mitigation only
Fix from $1,950 2025-06-04
Unified Contact Center Express MEDIUM 6.7
CVE-2025-20277

A vulnerability in the web-based management interface of Cisco Unified CCX could allow an authenticated, local attacker to execute arbitrary code on …

Mitigation only
Fix from $1,600 2025-06-04
Finesse MEDIUM 6.7
CVE-2025-20278

A vulnerability in the CLI of multiple Cisco Unified Communications products could allow an authenticated, local attacker to execute arbitrary comman…

Fix: 12.6+
Fix from $1,600 2025-06-04
Unified Intelligent Contact Management Enterprise MEDIUM 6.1
CVE-2025-20273

A vulnerability in the web-based management interface of Cisco Unified Intelligent Contact Management Enterprise could allow an unauthenticated, remo…

Fix: after 15.0
Fix from $1,600 2025-06-04
Nexus Dashboard HIGH 8.7
CVE-2025-20163

A vulnerability in the SSH implementation of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauthenticated, remote attacker to impers…

Fix: 3.2+
Fix from $1,950 2025-06-04
Thousandeyes Endpoint Agent MEDIUM 5.3
CVE-2025-20259

Multiple vulnerabilities in the update process of Cisco ThousandEyes Endpoint Agent for Windows could allow an authenticated, local attacker to delet…

Fix: 2.3.3+
Fix from $1,600 2025-06-04
Identity Services Engine HIGH 7.2
CVE-2025-20130

A vulnerability in the API of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, r…

Fix: 3.1.0+
Fix from $1,950 2025-06-04
Socialminer MEDIUM 5.4
CVE-2025-20129

A vulnerability in the web-based chat interface of Cisco Customer Collaboration Platform (CCP), formerly Cisco SocialMiner, could allow an unauthenti…

Mitigation only
Fix from $1,600 2025-06-04
Secure Network Analytics HIGH 7.2
CVE-2025-20256

A vulnerability in the web-based management interface of Cisco Secure Network Analytics Manager and Cisco Secure Network Analytics Virtual Manager co…

Mitigation only
Fix from $1,950 2025-05-21
Secure Network Analytics MEDIUM 6.5
CVE-2025-20257

A vulnerability in an API subsystem of Cisco Secure Network Analytics Manager and Cisco Secure Network Analytics Virtual Manager could allow an authe…

Mitigation only
Fix from $1,600 2025-05-21
Duo MEDIUM 5.4
CVE-2025-20258

A vulnerability in the self-service portal of Cisco Duo could allow an unauthenticated, remote attacker to inject arbitrary commands into emails that…

Mitigation only
Fix from $1,600 2025-05-21
Unified Contact Center Enterprise CRITICAL 9.1
CVE-2025-20242EPSS 5%

A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthenticated, remote attacker to re…

Mitigation only
Fix from $2,300 2025-05-21
Identity Services Engine HIGH 8.6
CVE-2025-20152

A vulnerability in the RADIUS message processing feature of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to c…

Mitigation only
Fix from $1,950 2025-05-21
Webex Meetings MEDIUM 6.1
CVE-2025-20246

A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is …

Mitigation only
Fix from $1,600 2025-05-21
Webex Meetings MEDIUM 6.1
CVE-2025-20247

A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is …

Mitigation only
Fix from $1,600 2025-05-21
Webex Meetings MEDIUM 6.1
CVE-2025-20250

A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is …

Mitigation only
Fix from $1,600 2025-05-21
Unified Intelligence Center HIGH 7.1
CVE-2025-20113

A vulnerability in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to elevate privileges to Administrator for a limit…

Mitigation only
Fix from $1,950 2025-05-21
Ios Xe CRITICAL 9.1
CVE-2025-20221

A vulnerability in the packet filtering features of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to bypass Layer 3 an…

Mitigation only
Fix from $2,300 2025-05-07
Ios Xe HIGH 7.4
CVE-2025-20202

A vulnerability in Cisco IOS XE Wireless Controller Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) con…

Mitigation only
Fix from $1,950 2025-05-07
Catalyst Center HIGH 7.3
CVE-2025-20210

A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to read an…

Fix: 2.3.7.9+
Fix from $1,950 2025-05-07
Catalyst Sd Wan Manager MEDIUM 5.5
CVE-2025-20213

A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to overwrite…

Mitigation only
Fix from $1,600 2025-05-07
Ios Xe HIGH 8.2
CVE-2025-20197

A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to roo…

Mitigation only
Fix from $1,950 2025-05-07
Ios Xe HIGH 8.2
CVE-2025-20198

A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to roo…

Mitigation only
Fix from $1,950 2025-05-07