Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cisco vulnerabilities and exploits
(subscribe to this query)
10
CVSSv3
CVE-2024-20253
A vulnerability in multiple Cisco Unified Communications and Contact Center Solutions products could allow an unauthenticated, remote malicious user to execute arbitrary code on an affected device. This vulnerability is due to the improper processing of user-provided data that is...
Cisco Unified Communications Manager
Cisco Unified Communications Manager Im And Presence Service
Cisco Unity Connection
Cisco Unified Contact Center Express 12.5\\(1\\)
Cisco Virtualized Voice Browser 12.6\\(2\\)
Cisco Virtualized Voice Browser 12.6\\(1\\)
Cisco Virtualized Voice Browser 12.5\\(1\\)
7.2
CVSSv3
CVE-2024-20263
A vulnerability with the access control list (ACL) management within a stacked switch configuration of Cisco Business 250 Series Smart Switches and Business 350 Series Managed Switches could allow an unauthenticated, remote malicious user to bypass protection offered by a configu...
Cisco Cbs250-8t-d Firmware
Cisco Cbs250-8pp-d Firmware
Cisco Cbs250-8t-e-2g Firmware
Cisco Cbs250-8pp-e-2g Firmware
Cisco Cbs250-8p-e-2g Firmware
Cisco Cbs250-8fp-e-2g Firmware
Cisco Cbs250-16t-2g Firmware
Cisco Cbs250-16p-2g Firmware
Cisco Cbs250-24t-4g Firmware
Cisco Cbs250-24pp-4g Firmware
Cisco Cbs250-24p-4g Firmware
Cisco Cbs250-24fp-4g Firmware
Cisco Cbs250-48t-4g Firmware
Cisco Cbs250-48pp-4g Firmware
Cisco Cbs250-48p-4g Firmware
Cisco Cbs250-24t-4x Firmware
Cisco Cbs250-24p-4x Firmware
Cisco Cbs250-24fp-4x Firmware
Cisco Cbs250-48t-4x Firmware
Cisco Cbs250-48p-4x Firmware
Cisco Cbs350-8t-e-2g Firmware
Cisco Cbs350-8p-2g Firmware
4.8
CVSSv3
CVE-2024-20305
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an authenticated, remote malicious user to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-based management interface...
Cisco Unity Connection
4.8
CVSSv3
CVE-2023-20257
A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an authenticated, remote malicious user to conduct cross-site scripting attacks. This vulnerability is due to improper validation of user-supplied input to the web-based management int...
Cisco Prime Infrastructure
Cisco Prime Infrastructure 3.10.4
Cisco Evolved Programmable Network Manager
5.4
CVSSv3
CVE-2024-20251
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote malicious user to perform a stored cross-site scripting (XSS) attack against a user of the interface on an affected device. This vulnerability exists...
Cisco Identity Services Engine 1.4\\(0.253\\)
Cisco Identity Services Engine 2.0\\(0.169\\)
Cisco Identity Services Engine 1.3\\(120.135\\)
Cisco Identity Services Engine 2.0\\(0.222\\)
Cisco Identity Services Engine 2.1\\(102.101\\)
Cisco Identity Services Engine 2.1\\(0.800\\)
Cisco Identity Services Engine 2.1\\(0.474\\)
Cisco Identity Services Engine 1.4\\(0.181\\)
Cisco Identity Services Engine 1.4\\(0.908\\)
Cisco Identity Services Engine 1.2\\(1.199\\)
Cisco Identity Services Engine 2.2\\(0.283\\)
Cisco Identity Services Engine 2.0\\(0.147\\)
Cisco Identity Services Engine 1.3\\(106.146\\)
Cisco Identity Services Engine 1.3\\(0.876\\)
Cisco Identity Services Engine 2.3\\(0.151\\)
Cisco Identity Services Engine 2.0\\(1.130\\)
Cisco Identity Services Engine 1.4\\(0.109\\)
Cisco Identity Services Engine 1.3\\(0.722\\)
Cisco Identity Services Engine 1.3\\(0.909\\)
Cisco Identity Services Engine 1.4
Cisco Identity Services Engine 2.0
Cisco Identity Services Engine 2.0.1
5.4
CVSSv3
CVE-2024-20270
A vulnerability in the web-based management interface of Cisco BroadWorks Application Delivery Platform and Cisco BroadWorks Xtended Services Platform could allow an authenticated, remote malicious user to conduct a stored cross-site scripting (XSS) attack against a user of the i...
Cisco Broadworks Xtended Services Platform
Cisco Broadworks Xtended Services Platform 23.0.2024.01
Cisco Broadworks Application Delivery Platform
Cisco Broadworks Application Delivery Platform 23.0.2024.01
9.8
CVSSv3
CVE-2024-20272
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an unauthenticated, remote malicious user to upload arbitrary files to an affected system and execute commands on the underlying operating system. This vulnerability is due to a lack of au...
Cisco Unity Connection
8
CVSSv3
CVE-2024-20277
A vulnerability in the web-based management interface of Cisco ThousandEyes Enterprise Agent, Virtual Appliance installation type, could allow an authenticated, remote malicious user to perform a command injection and elevate privileges to root. This vulnerability is due to insuf...
Cisco Thousandeyes Enterprise Agent
7.2
CVSSv3
CVE-2024-20287
A vulnerability in the web-based management interface of the Cisco WAP371 Wireless-AC/N Dual Radio Access Point (AP) with Single Point Setup could allow an authenticated, remote malicious user to perform command injection attacks against an affected device. This vulnerability is ...
Cisco Wap371 Firmware
7.2
CVSSv3
CVE-2023-20258
A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an authenticated, remote malicious user to execute arbitrary commands on the underlying operating system. This vulnerability is due to improper processing of serialized Java objects by...
Cisco Prime Infrastructure
Cisco Prime Infrastructure 3.10.4
Cisco Evolved Programmable Network Manager
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30051
remote
CVE-2024-27954
CVE-2023-51483
CVE-2023-47782
SSRF
CVE-2024-24715
CVE-2023-52424
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »