cisco

6,751 tracked vulnerabilities.

CVE-2021-1497 CRITICAL KEVNUCLEI
Cisco HyperFlex HX Data Platform < 4.0(2e) - Unauthenticated OS Command Injection
May 06, 2021
CVSS 9.8
EPSS 0.94
CVE-2021-1496 HIGH
Cisco AnyConnect Secure Mobility Client for Windows - Privilege Esc...
May 06, 2021
CVSS 7.0
EPSS 0.00
CVE-2021-1490 MEDIUM
Cisco Web Security Appliance < 14.0 - Unauthenticated Stored Cross-Site Scripting via File Upload
May 06, 2021
CVSS 4.7
EPSS 0.00
CVE-2021-1486 MEDIUM
Cisco SD-WAN vManage <20.3.3 & Catalyst SD-WAN Manager 20.4-20.4.1 - Unauthenticated User Enumeration
May 06, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-1478 MEDIUM
Cisco Unified Communications Manager < 12.6 - Authenticated Denial of Service via JMX Port Access
May 06, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-1468 CRITICAL
Cisco Catalyst SD-WAN Manager 20.4-20.4.1 and SD-WAN vManage < 20.3.3 - Improper Authentication
May 06, 2021
CVSS 9.8
EPSS 0.03
CVE-2021-1447 MEDIUM
Cisco Content Security Management Appliance < 12.8.1-002 Privilege Escalation via Password Flaw
May 06, 2021
CVSS 6.7
EPSS 0.00
CVE-2021-1438 MEDIUM
Cisco Wide Area Application Services < 6.4.5a - Authenticated Arbitrary File Read via CLI Command Injection
May 06, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-1430 HIGH
Cisco AnyConnect Secure Mobility Client for Windows - Privilege Esc...
May 06, 2021
CVSS 7.0
EPSS 0.00
CVE-2021-1429 HIGH
Cisco AnyConnect Secure Mobility Client for Windows - Privilege Esc...
May 06, 2021
CVSS 7.0
EPSS 0.00
CVE-2021-1428 HIGH
Cisco AnyConnect Secure Mobility Client for Windows - Privilege Esc...
May 06, 2021
CVSS 7.0
EPSS 0.00
CVE-2021-1427 HIGH
Cisco AnyConnect Secure Mobility Client for Windows - Privilege Esc...
May 06, 2021
CVSS 7.0
EPSS 0.00
CVE-2021-1426 HIGH
Cisco AnyConnect Secure Mobility Client for Windows - Privilege Esc...
May 06, 2021
CVSS 7.0
EPSS 0.00
CVE-2021-1421 HIGH
Cisco Enterprise NFV Infrastructure Software < 4.5.1 - Authenticated OS Command Injection via Configuration Command
May 06, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-1401 HIGH
Cisco Small Business WAP125, WAP131, WAP150, WAP351, WAP361, WAP581 Firmware - Authenticated OS Command Injection
May 06, 2021
CVSS 8.8
EPSS 0.01
CVE-2021-1400 HIGH
Cisco Small Business WAP125/131/150/351/361/581 Firmware - Authenticated Info Disclosure & Command Injection
May 06, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-1397 MEDIUM
Cisco Integrated Management Controller < 3.2(12.4) - Unauthenticated Open Redirect via HTTP Request Parameters
May 06, 2021
CVSS 4.7
EPSS 0.00
CVE-2021-1365 HIGH
Cisco Unified Communications Manager IM and Presence Service 10.5-11.5(1)su9 - Authenticated SQL Injection
May 06, 2021
CVSS 7.1
EPSS 0.00
CVE-2021-1363 HIGH
Cisco Unified Communications Manager IM and Presence Service 10.5-11.5(1)su9 - Authenticated SQL Injection
May 06, 2021
CVSS 7.1
EPSS 0.00
CVE-2021-1284 HIGH
Cisco Catalyst SD-WAN Manager 20.4-20.4.1 & vManage <20.3.1 - Authentication Bypass
May 06, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-1275 CRITICAL
Cisco Catalyst SD-WAN Manager 20.4-20.4.1 & vManage <20.3.3 - RCE & Info Disclosure
May 06, 2021
CVSS 9.8
EPSS 0.02
CVE-2021-1504 HIGH
Cisco Adaptive Security Appliance and Firepower Threat Defense - Unauthenticated Denial of Service via HTTPS Request
Apr 29, 2021
CVSS 8.6
EPSS 0.00
CVE-2021-1501 HIGH
Cisco Firepower/ASA DoS via SIP Pinhole Connection Hash Lookup
Apr 29, 2021
CVSS 8.6
EPSS 0.01
CVE-2021-1495 MEDIUM
Cisco Firepower Threat Defense < 6.4.0.12 - Unauthenticated File Policy Bypass via HTTP Header Handling
Apr 29, 2021
CVSS 5.8
EPSS 0.00
CVE-2021-1493 HIGH
Cisco Firepower Threat Defense < 6.4.0.12 & ASA 9.8-9.8.4.34 Authenticated Buffer Overflow
Apr 29, 2021
CVSS 8.5
EPSS 0.01