Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cisco sd-wan vmanage vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv2
CVE-2021-1505
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote malicious user to execute arbitrary code or gain access to sensitive information, or allow an authenticated, local malicious user to gain escalated privileges or gain unauthorized acc...
Cisco Sd-wan Vmanage
Cisco Catalyst Sd-wan Manager
6.5
CVSSv2
CVE-2021-1506
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote malicious user to execute arbitrary code or gain access to sensitive information, or allow an authenticated, local malicious user to gain escalated privileges or gain unauthorized acc...
Cisco Sd-wan Vmanage
Cisco Catalyst Sd-wan Manager
3.5
CVSSv2
CVE-2021-1507
A vulnerability in an API of Cisco SD-WAN vManage Software could allow an authenticated, remote malicious user to conduct a stored cross-site scripting (XSS) attack against users of the application web-based interface. This vulnerability exists because the API does not properly v...
Cisco Sd-wan Vmanage
6.5
CVSSv2
CVE-2021-1508
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote malicious user to execute arbitrary code or gain access to sensitive information, or allow an authenticated, local malicious user to gain escalated privileges or gain unauthorized acc...
Cisco Sd-wan Vmanage
Cisco Catalyst Sd-wan Manager
3.6
CVSSv2
CVE-2021-1512
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local malicious user to overwrite arbitrary files in the underlying file system of an affected system. This vulnerability is due to insufficient validation of the user-supplied input parameters of a...
Cisco Sd-wan Vbond Orchestrator -
Cisco Sd-wan Vmanage
Cisco Catalyst Sd-wan Manager
Cisco Vsmart Controller Firmware -
Cisco Vedge 100 Firmware -
Cisco Vedge 1000 Firmware -
Cisco Vedge 100b Firmware -
Cisco Vedge 100m Firmware -
Cisco Vedge 100wm Firmware -
Cisco Vedge 2000 Firmware -
Cisco Vedge 5000 Firmware -
Cisco Vedge-100b Firmware -
Cisco Vedge Cloud Firmware -
7.8
CVSSv2
CVE-2021-1513
A vulnerability in the vDaemon process of Cisco SD-WAN Software could allow an unauthenticated, remote malicious user to cause a device to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to insufficient handling of malformed packets. An attacke...
Cisco Sd-wan Vbond Orchestrator -
Cisco Catalyst Sd-wan Manager
Cisco Vsmart Controller Firmware -
Cisco Vedge 100 Firmware -
Cisco Vedge 1000 Firmware -
Cisco Vedge 100b Firmware -
Cisco Vedge 100m Firmware -
Cisco Vedge 100wm Firmware -
Cisco Vedge 2000 Firmware -
Cisco Vedge 5000 Firmware -
Cisco Vedge-100b Firmware -
Cisco Vedge Cloud Firmware -
3.3
CVSSv2
CVE-2021-1515
A vulnerability in Cisco SD-WAN vManage Software could allow an unauthenticated, adjacent malicious user to gain access to sensitive information. This vulnerability is due to improper access controls on API endpoints when Cisco SD-WAN vManage Software is running in multi-tenant m...
Cisco Sd-wan Vmanage
5
CVSSv2
CVE-2021-1535
A vulnerability in the cluster management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote malicious user to view sensitive information on an affected system. To be affected by this vulnerability, the Cisco SD-WAN vManage Software must be in clust...
Cisco Sd-wan Vmanage
NA
CVE-2021-1234
A vulnerability in the cluster management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to view sensitive information on an affected system. To be affected by this vulnerability, the vManage software must be in cluster mode. This vulne...
7 Github repositories
NA
CVE-2021-1484
A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to inject arbitrary commands on an affected system and cause a denial of service (DoS) condition. This vulnerability is due to improper input validation of user-supplied i...
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »