Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 6.1
CVE-2023-20228
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker…
Encs 5100 Firmware
3.2.15.1 / 4.3.2.230207+
MEDIUM 6.1
CVE-2023-20242
A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unified CM Session Management Editi…
Unified Communications Manager
Mitigation only
MEDIUM 6.5
CVE-2020-26065
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct path …
Catalyst Sd Wan Manager
Mitigation only
MEDIUM 5.3
CVE-2020-26082
A vulnerability in the zip decompression engine of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, re…
Asyncos
13.5.2+
HIGH 8.1
CVE-2020-26064
A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to informa…
Catalyst Sd Wan Manager
Mitigation only
CRITICAL 9.1
CVE-2023-20214
A vulnerability in the request authentication validation for the REST API of Cisco SD-WAN vManage software could allow an unauthenticated, remote att…
Catalyst Sd Wan Manager
20.6.4.2 / 20.6.5.5+
HIGH 7.8
CVE-2023-20216
A vulnerability in the privilege management functionality of all Cisco BroadWorks server types could allow an authenticated, local attacker to elevat…
Broadworks Application Delivery Platform
23.0.2023.05 / 24.0.2023.05+
MEDIUM 6.1
CVE-2023-20218
A vulnerability in web-based management interface of Cisco SPA500 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote attack…
Spa500ds Firmware
Mitigation only
MEDIUM 5.4
CVE-2023-20204
A vulnerability in the web-based management interface of Cisco BroadWorks CommPilot Application Software could allow an authenticated, remote attacke…
Broadworks Application Delivery Platform
23.0.2023.08 / 24.0.2023.08+
MEDIUM 5.3
CVE-2023-20215
A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthenticated, remote attacker to b…
Asyncos
No fix yet
MEDIUM 6.1
CVE-2023-20181
A vulnerability in the web-based management interface of Cisco Small Business SPA500 Series IP Phones could allow an unauthenticated, remote attacker…
Spa500ds Firmware
Mitigation only
HIGH 7.5
CVE-2023-37464
OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). The AES GCM decryption routine incorrectly uses the Ta…
Cjose
0.6.2.2+
HIGH 7.4
CVE-2023-20185
A vulnerability in the Cisco ACI Multi-Site CloudSec encryption feature of Cisco Nexus 9000 Series Fabric Switches in ACI mode could allow an unauthe…
Nx Os
Mitigation only
MEDIUM 6.0
CVE-2023-20210
A vulnerability in Cisco BroadWorks could allow an authenticated, local attacker to elevate privileges to the root user on an affected device.
The…
Broadworks Application Delivery Platform Firmware
Mitigation only
MEDIUM 5.4
CVE-2023-20133
A vulnerability in the web interface of Cisco Webex Meetings could allow an authenticated, remote attacker to conduct a stored cross-site scripting (…
Webex Meetings
Mitigation only
HIGH 7.7
CVE-2023-20192
Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated attacker wit…
Telepresence Video Communication Server
Mitigation only
MEDIUM 6.6
CVE-2023-20199
A vulnerability in Cisco Duo Two-Factor Authentication for macOS could allow an authenticated, physical attacker to bypass secondary authentication a…
Duo
2.0.2+
HIGH 7.8
CVE-2023-20178EPSS 5%
A vulnerability in the client update process of Cisco AnyConnect Secure Mobility Client Software for Windows and Cisco Secure Client Software for Win…
Anyconnect Secure Mobility Client
4.10.07061 / 5.0.02075+
HIGH 7.5
CVE-2023-20006
A vulnerability in the hardware-based SSL/TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Thre…
Secure Firewall Threat Defense
Mitigation only
HIGH 7.5
CVE-2023-20108
A vulnerability in the XCP Authentication Service of the Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P) could a…
Unified Communications Manager Im And Presence Service
Mitigation only
MEDIUM 6.5
CVE-2023-20105
A vulnerability in the change password functionality of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow a…
Telepresence Video Communication Server
Mitigation only
MEDIUM 6.5
CVE-2023-20136
A vulnerability in the OpenAPI of Cisco Secure Workload could allow an authenticated, remote attacker with the privileges of a read-only user to exec…
Secure Workload
3.7.1.40+
MEDIUM 6.1
CVE-2023-20119
A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager, formerly known as Content Sec…
Secure Email And Web Manager
Mitigation only
MEDIUM 6.1
CVE-2023-20120
Multiple vulnerabilities in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager; Cisco Secure Email G…
Secure Email And Web Manager
Mitigation only
MEDIUM 5.7
CVE-2023-20116
A vulnerability in the Administrative XML Web Service (AXL) API of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications…
Unified Communications Manager
Mitigation only
MEDIUM 5.4
CVE-2023-20028
Multiple vulnerabilities in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager; Cisco Secure Email G…
Secure Email And Web Manager
Mitigation only
CRITICAL 9.8
CVE-2023-20189EPSS 11%
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attac…
Business 250 16p 2g Firmware
Mitigation only
HIGH 8.8
CVE-2023-20182
Multiple vulnerabilities in the API of Cisco DNA Center Software could allow an authenticated, remote attacker to read information from a restricted …
Catalyst Center
2.3.3.7 / 2.3.5.3+
CRITICAL 9.8
CVE-2023-20157
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attac…
Business 250 16p 2g Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-20158
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attac…
Business 250 16p 2g Firmware
Mitigation only