Vulnerabilities in cisco
3,365 resultsVexday analysis
A Cisco possui 2 CVEs registradas na base do Vexday, nenhuma delas sob ataque ativo no momento. Não há vulnerabilidades críticas ou publicações recentes (últimos 90 dias), indicando um panorama de risco baixo e estável. A fraqueza dominante identificada é CWE-122 (buffer overflow), mas sem evidências de exploração em campo.
CVE-2021-40126MEDIUMCisco Umbrella Email Enumeration VulnerabilityEPSS 0.9%CVE-2021-34765MEDIUMCisco Nexus Insights Authenticated Information Disclosure VulnerabilityEPSS 0.9%CVE-2022-20920HIGHCisco IOS and IOS XE Software SSH Denial of Service VulnerabilityEPSS 0.9%CVE-2019-1948MEDIUMCisco Webex Meetings Mobile (iOS) SSL Certificate Validation VulnerabilityEPSS 0.9%CVE-2020-3154MEDIUMCisco Cloud Web Security SQL Injection VulnerabilityEPSS 0.9%CVE-2025-20354CRITICALCisco Unified Contact Center Express Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-20051MEDIUMCisco Packet Data Network Gateway IPsec ICMP Denial of Service VulnerabilityEPSS 0.9%CVE-2025-20186HIGHA vulnerability in the web-based management interface of the Wireless LAN Controller feature of Cisco IOS XE Software could allow an authentEPSS 0.9%CVE-2025-20184MEDIUMCisco Secure Email and Web Manager and Secure Web Appliance Command Injection VulnerabilityEPSS 0.9%CVE-2020-3126LOWCisco Webex Meetings Multimedia Viewer VulnerabilityEPSS 0.9%CVE-2019-1701MEDIUMCisco Adaptive Security Appliance and Firepower Threat Defense Software WebVPN Cross-Site Scripting VulnerabilitiesEPSS 0.9%CVE-2018-15426—Cisco Unity Connection Stored Cross-Site Scripting VulnerabilityEPSS 0.9%CVE-2023-20020HIGHA vulnerability in the Device Management Servlet application of Cisco BroadWorks Application Delivery Platform and Cisco BroadWorks Xtended EPSS 0.9%CVE-2023-20046HIGHA vulnerability in the key-based SSH authentication feature of Cisco StarOS Software could allow an authenticated, remote attacker to elevatEPSS 0.9%CVE-2019-1609MEDIUMCisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1609)EPSS 0.9%CVE-2024-20436HIGHA vulnerability in the HTTP Server feature of Cisco IOS XE Software when the Telephony Service feature is enabled could allow an unauthenticEPSS 0.9%CVE-2022-20766MEDIUMCisco ATA 190 Series Analog Telephone Adapter firmware Cisco Discovery Protocol Denial of Service VulnerabilityEPSS 0.9%CVE-2025-20165HIGHCisco BroadWorks SIP Denial of Service VulnerabilityEPSS 0.9%CVE-2011-2054MEDIUMCisco ASA Secondary Authentication Bypass VulnerabilityEPSS 0.9%CVE-2024-20416MEDIUMA vulnerability in the upload module of Cisco RV340 and RV345 Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to EPSS 0.9%