Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.3
CVE-2024-20430
A vulnerability in Cisco Meraki Systems Manager (SM) Agent for Windows could allow an authenticated, local attacker to execute arbitrary code with el…
Meraki Systems Manager
4.2.0+
HIGH 7.4
CVE-2024-20406
A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS XR Software could all…
Ios Xr
7.0.0 / 7.11.2+
HIGH 7.2
CVE-2024-20483
Multiple vulnerabilities in Cisco Routed PON Controller Software, which runs as a docker container on hardware that is supported by Cisco IOS XR Soft…
Ios Xr
Mitigation only
MEDIUM 5.5
CVE-2024-20489
A vulnerability in the storage method of the PON Controller configuration file could allow an authenticated, local attacker with low privileges to ob…
Ios Xr
Mitigation only
HIGH 8.8
CVE-2024-20381
A vulnerability in the JSON-RPC API feature in Cisco Crosswork Network Services Orchestrator (NSO) and ConfD that is used by the web-based management…
Ios Xr
Mitigation only
HIGH 7.8
CVE-2024-20398
A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to obtain read/write file system access on the under…
Ios Xr
Mitigation only
HIGH 7.4
CVE-2024-20317
A vulnerability in the handling of specific Ethernet frames by Cisco IOS XR Software for various Cisco Network Convergence System (NCS) platforms cou…
Ios Xr
Mitigation only
MEDIUM 5.5
CVE-2024-20343
A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to read any file in the file system of the underlyin…
Ios Xr
Mitigation only
MEDIUM 5.3
CVE-2024-20390
A vulnerability in the Dedicated XML Agent feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of serv…
Ios Xr
24.1.2+
HIGH 7.5
CVE-2024-20304
A vulnerability in the multicast traceroute version 2 (Mtrace2) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to e…
Ios Xr
Mitigation only
MEDIUM 5.5
CVE-2024-20503
A vulnerability in Cisco Duo Epic for Hyperdrive could allow an authenticated, local attacker to view sensitive information in cleartext on an affect…
Duo Authentication For Epic
Mitigation only
CRITICAL 9.8
CVE-2024-20439 KEVEPSS 92%
A vulnerability in Cisco Smart Licensing Utility (CSLU) could allow an unauthenticated, remote attacker to log into an affected system by using a sta…
Smart License Utility
2.3.0+
HIGH 7.5
CVE-2024-20440EPSS 52%
A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker to access sensitive information.
This vulnerabili…
Smart License Utility
Mitigation only
MEDIUM 6.7
CVE-2024-20469
A vulnerability in specific CLI commands in Cisco Identity Services Engine (ISE) could allow an authenticated, local attacker to perform command inje…
Identity Services Engine
Mitigation only
HIGH 7.2
CVE-2024-20478
A vulnerability in the software upgrade component of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Network Controlle…
Application Policy Infrastructure Controller
Mitigation only
HIGH 8.8
CVE-2024-20286
A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, low-privileged, local attacker to escape the Python s…
Nx Os
Mitigation only
HIGH 8.8
CVE-2024-20285
A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, low-privileged, local attacker to escape the Python s…
Nx Os
Mitigation only
HIGH 8.8
CVE-2024-20284
A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, low-privileged, local attacker to escape the Python s…
Nx Os
Mitigation only
HIGH 8.8
CVE-2024-20486
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond…
Identity Services Engine
3.1+
HIGH 8.1
CVE-2024-20417
Multiple vulnerabilities in the REST API of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct blind SQL i…
Identity Services Engine
after 3.1
MEDIUM 6.1
CVE-2024-20488
A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager S…
Unified Communications Manager
Mitigation only
HIGH 7.5
CVE-2024-20375
A vulnerability in the SIP call processing function of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Ses…
Unified Communications Manager
Mitigation only
CRITICAL 9.8
CVE-2024-20450EPSS 7%
Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series…
Spa 301 Firmware
Mitigation only
CRITICAL 9.8
CVE-2024-20454EPSS 7%
Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series…
Spa 301 Firmware
Mitigation only
HIGH 7.5
CVE-2024-20451
Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series…
Spa 301 Firmware
Mitigation only
MEDIUM 5.4
CVE-2024-20443
A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to conduct an XSS attack against a u…
Identity Services Engine
No fix yet
CRITICAL 10.0
CVE-2024-20419EPSS 81%
A vulnerability in the authentication system of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to…
Smart Software Manager On Prem
8-202112+
HIGH 7.8
CVE-2024-20435
A vulnerability in the CLI of Cisco AsyncOS for Secure Web Appliance could allow an authenticated, local attacker to execute arbitrary commands and e…
Asyncos
Mitigation only
HIGH 7.2
CVE-2024-20429
A vulnerability in the web-based management interface of Cisco AsyncOS for Secure Email Gateway could allow an authenticated, remote attacker to exec…
Asyncos
Mitigation only
CRITICAL 9.8
CVE-2024-20401
A vulnerability in the content scanning and message filtering features of Cisco Secure Email Gateway could allow an unauthenticated, remote attacker …
Secure Email Gateway
15.5.1-055+