cisco

6,751 tracked vulnerabilities.

CVE-2024-20381 HIGH
Cisco Crosswork NSO/ConfD - Privilege Escalation
Sep 11, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-20343 MEDIUM
Cisco IOS XR - Authenticated Arbitrary File Read via CLI Command Argument Validation Bypass
Sep 11, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-20317 HIGH
Cisco IOS XR - Unauthenticated Denial of Service via Ethernet Frame Classification
Sep 11, 2024
CVSS 7.4
EPSS 0.00
CVE-2024-20304 HIGH
Cisco IOS XR - Unauthenticated Denial of Service via Mtrace2 UDP Packet Memory Exhaustion
Sep 11, 2024
CVSS 8.6
EPSS 0.01
CVE-2024-20503 MEDIUM
Cisco Duo Epic for Hyperdrive - Info Disclosure
Sep 04, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-20497 MEDIUM
Cisco Expressway Edge - Auth Bypass
Sep 04, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-20469 MEDIUM
Cisco Identity Services Engine - Authenticated OS Command Injection via CLI Commands
Sep 04, 2024
CVSS 6.0
EPSS 0.00
CVE-2024-20440 HIGH NUCLEI
Cisco Smart Licensing Utility - Info Disclosure
Sep 04, 2024
CVSS 7.5
EPSS 0.78
CVE-2024-20439 CRITICAL KEVNUCLEI
Cisco Smart Licensing Utility - Auth Bypass
Sep 04, 2024
CVSS 9.8
EPSS 0.87
CVE-2024-20478 MEDIUM
Cisco APIC/Cloud Network Controller - Code Injection
Aug 28, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-20446 HIGH
Cisco NX-OS Software - Denial of Service via DHCPv6 RELAY-REPLY Message Handling
Aug 28, 2024
CVSS 8.6
EPSS 0.01
CVE-2024-20413 MEDIUM
Cisco NX-OS Software - Privilege Escalation
Aug 28, 2024
CVSS 6.7
EPSS 0.00
CVE-2024-20411 MEDIUM
Cisco NX-OS Software - Privilege Escalation
Aug 28, 2024
CVSS 6.7
EPSS 0.00
CVE-2024-20289 MEDIUM
Cisco NX-OS Software - Command Injection
Aug 28, 2024
CVSS 4.4
EPSS 0.00
CVE-2024-20286 MEDIUM
Cisco NX-OS Software - Code Injection
Aug 28, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-20285 MEDIUM
Cisco NX-OS Software - Code Injection
Aug 28, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-20284 MEDIUM
Cisco NX-OS Software - Code Injection
Aug 28, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-20279 MEDIUM
Cisco Application Policy Infrastructure Controller - Authenticated Improper Access Control in Restricted Security Domain
Aug 28, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-20486 MEDIUM
Cisco Identity Services Engine - Cross-Site Request Forgery
Aug 21, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-20466 MEDIUM
Cisco Identity Services Engine - Authenticated Sensitive Information Exposure via Web Management Interface
Aug 21, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-20417 MEDIUM
Cisco Identity Services Engine - Authenticated Blind SQL Injection via REST API
Aug 21, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-20488 MEDIUM
Cisco Unified Communications Manager - Unauthenticated Stored Cross-Site Scripting via Web Interface
Aug 21, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-20375 HIGH
Cisco Unified Communications Manager - DoS
Aug 21, 2024
CVSS 8.6
EPSS 0.01
CVE-2024-20479 MEDIUM
Cisco Identity Services Engine - Authenticated Stored Cross-Site Scripting in Web Management Interface
Aug 07, 2024
CVSS 4.8
EPSS 0.00
CVE-2024-20454 CRITICAL
Cisco SPA300/SPA500 IP Phones - Remote Code Execution via HTTP Buffer Overflow
Aug 07, 2024
CVSS 9.8
EPSS 0.12