Skip to main content

Vendor archive

cisco CVEs

Beta · best-effort

6,615 CVEs tagged to vendor cisco574 Critical, 2,397 High, 3,565 Medium, 77 Low, 2 Unrated.

CVE-2025-20255

Published May 21, 2025

A vulnerability in client join services of Cisco Webex Meetings could allow an unauthenticated, remote attacker to manipulate cached HTTP responses within the meeting join service…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20250

Published May 21, 2025

A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is due to improper filtering of u…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20247

Published May 21, 2025

A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is due to improper filtering of u…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20246

Published May 21, 2025

A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is due to improper filtering of u…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20242

Published May 21, 2025

A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthenticated, remote attacker to read and modify data on an affec…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20152

Published May 21, 2025

A vulnerability in the RADIUS message processing feature of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS)…

CVSS 8.6 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-20223

Published May 7, 2025

A vulnerability in Cisco Catalyst Center, formerly Cisco DNA Center, could allow an authenticated, remote attacker to read and modify data in a repository that belongs to an inter…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20221

Published May 7, 2025

A vulnerability in the packet filtering features of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to bypass Layer 3 and Layer 4 traffic filters.…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-20216

Published May 7, 2025

A vulnerability in the web interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated, remote attacker to inject HTML into the brows…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20214

Published May 7, 2025

A vulnerability in the Network Configuration Access Control Module (NACM) of Cisco IOS XE Software could allow an authenticated, remote attacker to obtain unauthorized read access…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20213

Published May 7, 2025

A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to overwrite arbitrary files on the local…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20210

Published May 7, 2025

A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to read and modify the outgoing proxy co…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2025-20202

Published May 7, 2025

A vulnerability in Cisco IOS XE Wireless Controller Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device.…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2025-20201

Published May 7, 2025

A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20200

Published May 7, 2025

A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20199

Published May 7, 2025

A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20198

Published May 7, 2025

A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20197

Published May 7, 2025

A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20195

Published May 7, 2025

A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to perform a CSRF attack and execute commands on the…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20194

Published May 7, 2025

A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privileged, remote attacker to perform an injection attack against…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20193

Published May 7, 2025

A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privileged, remote attacker to perform an injection attack against…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 176-200 of 6,615 CVEsPage 8 of 265