Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cisco vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2024-20290
A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote malicious user to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an incorrect check for end-of-string values during scanning, which may r...
Cisco Secure Endpoint Private Cloud
Cisco Secure Endpoint
Fedoraproject Fedora 38
Fedoraproject Fedora 39
1 Article
NA
CVE-2024-20305
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an authenticated, remote malicious user to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-based management interface...
Cisco Unity Connection
NA
CVE-2024-20253
A vulnerability in multiple Cisco Unified Communications and Contact Center Solutions products could allow an unauthenticated, remote malicious user to execute arbitrary code on an affected device. This vulnerability is due to the improper processing of user-provided data that is...
Cisco Unified Communications Manager
Cisco Unified Communications Manager Im And Presence Service
Cisco Unity Connection
Cisco Unified Contact Center Express 12.5\\(1\\)
Cisco Virtualized Voice Browser 12.6\\(2\\)
Cisco Virtualized Voice Browser 12.6\\(1\\)
Cisco Virtualized Voice Browser 12.5\\(1\\)
NA
CVE-2024-20263
A vulnerability with the access control list (ACL) management within a stacked switch configuration of Cisco Business 250 Series Smart Switches and Business 350 Series Managed Switches could allow an unauthenticated, remote malicious user to bypass protection offered by a configu...
Cisco Cbs250-8t-d Firmware
Cisco Cbs250-8pp-d Firmware
Cisco Cbs250-8t-e-2g Firmware
Cisco Cbs250-8pp-e-2g Firmware
Cisco Cbs250-8p-e-2g Firmware
Cisco Cbs250-8fp-e-2g Firmware
Cisco Cbs250-16t-2g Firmware
Cisco Cbs250-16p-2g Firmware
Cisco Cbs250-24t-4g Firmware
Cisco Cbs250-24pp-4g Firmware
Cisco Cbs250-24p-4g Firmware
Cisco Cbs250-24fp-4g Firmware
Cisco Cbs250-48t-4g Firmware
Cisco Cbs250-48pp-4g Firmware
Cisco Cbs250-48p-4g Firmware
Cisco Cbs250-24t-4x Firmware
Cisco Cbs250-24p-4x Firmware
Cisco Cbs250-24fp-4x Firmware
Cisco Cbs250-48t-4x Firmware
Cisco Cbs250-48p-4x Firmware
Cisco Cbs350-8t-e-2g Firmware
Cisco Cbs350-8p-2g Firmware
NA
CVE-2024-20272
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an unauthenticated, remote malicious user to upload arbitrary files to an affected system and execute commands on the underlying operating system. This vulnerability is due to a lack of au...
Cisco Unity Connection
NA
CVE-2024-20277
A vulnerability in the web-based management interface of Cisco ThousandEyes Enterprise Agent, Virtual Appliance installation type, could allow an authenticated, remote malicious user to perform a command injection and elevate privileges to root. This vulnerability is due to insuf...
Cisco Thousandeyes Enterprise Agent
NA
CVE-2024-20287
A vulnerability in the web-based management interface of the Cisco WAP371 Wireless-AC/N Dual Radio Access Point (AP) with Single Point Setup could allow an authenticated, remote malicious user to perform command injection attacks against an affected device. This vulnerability is ...
Cisco Wap371 Firmware
NA
CVE-2023-20257
A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an authenticated, remote malicious user to conduct cross-site scripting attacks. This vulnerability is due to improper validation of user-supplied input to the web-based management int...
Cisco Prime Infrastructure
Cisco Prime Infrastructure 3.10.4
Cisco Evolved Programmable Network Manager
NA
CVE-2023-20258
A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an authenticated, remote malicious user to execute arbitrary commands on the underlying operating system. This vulnerability is due to improper processing of serialized Java objects by...
Cisco Prime Infrastructure
Cisco Prime Infrastructure 3.10.4
Cisco Evolved Programmable Network Manager
NA
CVE-2023-20260
A vulnerability in the application CLI of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager could allow an authenticated, local malicious user to gain escalated privileges. This vulnerability is due to improper processing of command line arguments to appli...
Cisco Prime Infrastructure
Cisco Prime Infrastructure 3.10.4
Cisco Evolved Programmable Network Manager
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49333
CVE-2024-33901
CVE-2024-36001
CVE-2024-2835
firewall
XPath injection
authentication bypass
CVE-2024-22120
CVE-2024-32002
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »