cisco

6,751 tracked vulnerabilities.

CVE-2025-20165 HIGH
Cisco BroadWorks Network Server < 2024.11 - Unauthenticated Denial of Service via SIP Request Memory Exhaustion
Jan 22, 2025
CVSS 7.5
EPSS 0.03
CVE-2025-20156 CRITICAL
Cisco Meeting Management - Privilege Escalation
Jan 22, 2025
CVSS 9.9
EPSS 0.01
CVE-2025-20128 MEDIUM
ClamAV < 1.0.8 - Denial of Service via OLE2 Decryption Routine
Jan 22, 2025
CVSS 5.3
EPSS 0.02
CVE-2025-20168 MEDIUM
Cisco Common Services Platform Collector - Authenticated Stored Cross-Site Scripting
Jan 08, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-20167 MEDIUM
Cisco Common Services Platform Collector - Authenticated Stored Cross-Site Scripting
Jan 08, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-20166 MEDIUM
Cisco Common Services Platform Collector - Authenticated Stored Cross-Site Scripting
Jan 08, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-20126 MEDIUM
Cisco ThousandEyes Endpoint Agent - Info Disclosure
Jan 08, 2025
CVSS 4.8
EPSS 0.00
CVE-2025-20123 MEDIUM
Cisco Crosswork Network Controller - XSS
Jan 08, 2025
CVSS 4.8
EPSS 0.00
CVE-2024-20397 MEDIUM
Cisco NX-OS Software - Privilege Escalation
Dec 04, 2024
CVSS 5.2
EPSS 0.00
CVE-2024-20373 MEDIUM
Cisco IOS XE SD-WAN - Unauthenticated SNMP Access Control Bypass via IPv4 ACL Misconfiguration
Nov 15, 2024
CVSS 5.3
EPSS 0.01
CVE-2024-20540 MEDIUM
Cisco Unified Contact Center Management Portal < 12.6(1)_es14 - Authenticated Stored Cross-Site Scripting
Nov 06, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-20539 MEDIUM
Cisco Identity Services Engine - Authenticated Stored Cross-Site Scripting in Web Management Interface
Nov 06, 2024
CVSS 4.8
EPSS 0.00
CVE-2024-20538 MEDIUM
Cisco Identity Services Engine - Unauthenticated Stored Cross-Site Scripting
Nov 06, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-20537 MEDIUM
Cisco Identity Services Engine - Authenticated Authorization Bypass via Crafted HTTP Request
Nov 06, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-20536 HIGH
Cisco Nexus Dashboard Fabric Controller - SQL Injection
Nov 06, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-20534 MEDIUM
Cisco IP Phone 6800/7800/8800/9800 & Video Phone 8875 - Authenticated Stored XSS in Web UI
Nov 06, 2024
CVSS 4.8
EPSS 0.00
CVE-2024-20533 MEDIUM
Cisco IP Phone 6800/7800/8800/9800 Series & Video Phone 8875 Stored XSS
Nov 06, 2024
CVSS 4.8
EPSS 0.00
CVE-2024-20532 MEDIUM
Cisco Identity Services Engine - Authenticated Path Traversal and Arbitrary File Deletion via API
Nov 06, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-20531 MEDIUM
Cisco Identity Services Engine - Authenticated XML External Entity Injection and Server-Side Request Forgery via API
Nov 06, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-20530 MEDIUM
Cisco Identity Services Engine - Unauthenticated Stored Cross-Site Scripting
Nov 06, 2024
CVSS 6.1
EPSS 0.01
CVE-2024-20529 MEDIUM
Cisco Identity Services Engine - Authenticated Path Traversal and Arbitrary File Read/Delete via API
Nov 06, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-20528 LOW
Cisco Identity Services Engine - Authenticated Path Traversal and Arbitrary File Write via API
Nov 06, 2024
CVSS 3.8
EPSS 0.01
CVE-2024-20527 MEDIUM
Cisco Identity Services Engine - Authenticated Arbitrary File Read and Delete via API Parameter
Nov 06, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-20525 MEDIUM
Cisco Identity Services Engine - Unauthenticated Stored Cross-Site Scripting
Nov 06, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-20514 MEDIUM
Cisco EPNM/Prime Infrastructure - XSS
Nov 06, 2024
CVSS 5.4
EPSS 0.00