Перейти к содержимому
Noroxi

Записи cisco

6 752 опубликованных записей вендора cisco.

Профиль для исследователя

Попали в KEV
104 · 1,5 %
С эксплойтом
151 · 2,2 %
Pre-auth RCE
648
С записью об исправлении
1 %
Медиана: публикация → KEV
996 дн.

Все записи

6 752 записей
  • CVE-2021-44228
    100Срочно

    Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints

    КритическаяCVSS 10,0KEVГотовый эксплойтEPSS 100 %

    apache · log4j10 дек. 2021 г.

  • CVE-2023-20198
    100Срочно

    Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS XE Software.

    КритическаяCVSS 10,0KEVГотовый эксплойтEPSS 100 %

    cisco · ios xe16 окт. 2023 г.

  • CVE-2025-32433
    100Срочно

    Erlang/OTP SSH Vulnerable to Pre-Authentication RCE

    КритическаяCVSS 10,0KEVГотовый эксплойтEPSS 99 %

    erlang · erlang\/otp16 апр. 2025 г.

  • CVE-2021-1498
    99Срочно

    Cisco HyperFlex HX Command Injection Vulnerabilities

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    cisco · hyperflex hx data platform6 мая 2021 г.

  • CVE-2021-1497
    99Срочно

    Cisco HyperFlex HX Command Injection Vulnerabilities

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    cisco · hyperflex hx data platform6 мая 2021 г.

  • CVE-2022-22965
    99Срочно

    A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding.

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    vmware · spring framework1 апр. 2022 г.

  • CVE-2018-0171
    99Срочно

    A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 99 %

    cisco · ios28 мар. 2018 г.

  • CVE-2017-3881
    99Срочно

    A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthe

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 99 %

    cisco · ios17 мар. 2017 г.

  • CVE-2025-20281
    99Срочно

    Cisco ISE API Unauthenticated Remote Code Execution Vulnerability

    КритическаяCVSS 10,0KEVГотовый эксплойтEPSS 98 %

    cisco · identity services engine25 июн. 2025 г.

  • CVE-2024-20439
    98Срочно

    A vulnerability in Cisco Smart Licensing Utility (CSLU) could allow an unauthenticated, remote attacker to log into an affected system by us

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 97 %

    cisco · smart license utility4 сент. 2024 г.

  • CVE-2026-20182
    97Срочно

    Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability

    КритическаяCVSS 10,0KEVГотовый эксплойтEPSS 92 %

    cisco · catalyst sd-wan manager14 мая 2026 г.

  • CVE-2026-20127
    97Срочно

    Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability

    КритическаяCVSS 10,0KEVГотовый эксплойтEPSS 88 %

    cisco · catalyst sd-wan manager25 февр. 2026 г.

  • CVE-2026-20079
    96Срочно

    Cisco Secure Firewall Management Center Authentication Bypass Remote Code Execution Vulnerability

    КритическаяCVSS 10,0KEVГотовый эксплойтEPSS 88 %

    cisco · secure firewall management center4 мар. 2026 г.

  • CVE-2020-3161
    94Срочно

    Cisco IP Phones Web Server Remote Code Execution and Denial of Service Vulnerability

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 84 %

    cisco · ip phone 8865 firmware15 апр. 2020 г.

  • CVE-2017-9805
    92Срочно

    The REST Plugin in Apache Struts 2.1.1 through 2.3.x before 2.3.34 and 2.5.x before 2.5.13 uses an XStreamHandler with an instance of XStrea

    ВысокаяCVSS 8,1KEVГотовый эксплойтEPSS 99 %

    apache · struts15 сент. 2017 г.

  • CVE-2016-6366
    91Срочно

    Buffer overflow in Cisco Adaptive Security Appliance (ASA) Software through 9.4.2.3 on ASA 5500, ASA 5500-X, ASA Services Module, ASA 1000V,

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 88 %

    cisco · pix firewall software18 авг. 2016 г.

  • CVE-2022-20699
    91Срочно

    Cisco Small Business RV Series Routers Vulnerabilities

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 72 %

    cisco · rv340 firmware10 февр. 2022 г.

  • CVE-2023-44487
    90Срочно

    The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 100 %

    siemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware10 окт. 2023 г.

  • CVE-2020-3452
    90Срочно

    Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Read-Only Path Traversal Vulnerability

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 100 %

    cisco · adaptive security appliance software22 июл. 2020 г.

  • CVE-2018-0296
    90Срочно

    A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 100 %

    cisco · adaptive security appliance software7 июн. 2018 г.

  • CVE-2019-1653
    90Срочно

    Cisco Small Business RV320 and RV325 Routers Information Disclosure Vulnerability

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 100 %

    cisco · rv320 firmware24 янв. 2019 г.

  • CVE-2026-20230
    90Срочно

    Cisco Unified Communications Manager Server-Side Request Forgery Vulnerability

    ВысокаяCVSS 8,6KEVГотовый эксплойтEPSS 88 %

    cisco · unified communications manager3 июн. 2026 г.

  • CVE-2025-20362
    90Срочно

    Update: On November 5, 2025, Cisco became aware of a new attack variant against devices running Cisco Secure ASA Software or Cisco Secure FT

    ВысокаяCVSS 8,6KEVГотовый эксплойтEPSS 87 %

    cisco · adaptive security appliance software25 сент. 2025 г.

  • CVE-2025-20333
    90Срочно

    A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat D

    КритическаяCVSS 9,9KEVГотовый эксплойтEPSS 71 %

    cisco · adaptive security appliance software25 сент. 2025 г.

  • CVE-2025-20337
    90Срочно

    Cisco ISE API Unauthenticated Remote Code Execution Vulnerability

    КритическаяCVSS 10,0KEVГотовый эксплойтEPSS 68 %

    cisco · identity services engine16 июл. 2025 г.