Search: "cisco"

6756 CVEs found

CVE-2025-20295
6.0 MEDIUM

A vulnerability in the CLI of Cisco UCS Manager Software could allow an authenticated, local attacker with administrative privileges to read or create a file or overwrite any file on the file system o...

Published: 2025-08-27
Products: 0
CVE-2025-20296
5.4 MEDIUM

A vulnerability in the web-based management interface of Cisco UCS Manager Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user o...

Published: 2025-08-27
Products: 0

A vulnerability in the Virtual Keyboard Video Monitor (vKVM) connection handling of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to redirect a user to a...

Published: 2025-08-27
Products: 0
CVE-2025-20342
5.4 MEDIUM

A vulnerability in the Virtual Keyboard Video Monitor (vKVM) connection handling of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker with low privileges to co...

Published: 2025-08-27
Products: 0
CVE-2025-20344
6.5 MEDIUM

A vulnerability in the backup restore functionality of Cisco Nexus Dashboard could allow an authenticated, remote attacker to conduct a path traversal attack on an affected device. This vulnerabili...

Published: 2025-08-27
Products: 1
Vendors:
cisco
CVE-2025-20347
5.4 MEDIUM

A vulnerability in the REST API endpoints of Cisco Nexus Dashboard and Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, low-privileged, remote attacker to view sensitive in...

Published: 2025-08-27
Products: 1
Vendors:
cisco
CVE-2025-20348
5.0 MEDIUM

A vulnerability in the REST API endpoints of Cisco Nexus Dashboard and Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, low-privileged, remote attacker to view sensitive in...

Published: 2025-08-27
Products: 1
Vendors:
cisco
CVE-2025-20270
4.3 MEDIUM

A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Prime Infrastructure could allow an authenticated, remote attacker to obtain sensit...

Published: 2025-09-03
Products: 5
Vendors:
cisco
CVE-2025-20280
4.8 MEDIUM

A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Prime Infrastructure could allow an authenticated, remote attacker to conduct a sto...

Published: 2025-09-03
Products: 4
Vendors:
cisco
CVE-2025-20287
4.3 MEDIUM

A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attacker to upload arbitrary files to an affected device...

Published: 2025-09-03
Products: 1
Vendors:
cisco
CVE-2025-20291
4.3 MEDIUM

A vulnerability in Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to redirect a targeted Webex Meetings user to an untrusted website. Cisco has addressed this vulnerabilit...

Published: 2025-09-03
Products: 1
Vendors:
cisco
CVE-2025-20326
4.3 MEDIUM

A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) Software and Cisco Unified CM Session Management Edition (SME) Software could allow an unauth...

Published: 2025-09-03
Products: 3
Vendors:
cisco
CVE-2025-20328
5.4 MEDIUM

A vulnerability in the user profile component of Cisco Webex Meetings could have allowed an authenticated, remote attacker with low privileges to conduct a cross-site scripting (XSS) attack against a ...

Published: 2025-09-03
Products: 1
Vendors:
cisco
CVE-2025-20330
6.1 MEDIUM

A vulnerability in the web-based management interface of Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P) could allow an unauthenticated, remote attacker to conduct...

Published: 2025-09-03
Products: 3
Vendors:
cisco
CVE-2025-20335
5.3 MEDIUM

A vulnerability in the directory permissions of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 could allow an unauthenticated, remote attacker to write a...

Published: 2025-09-03
Products: 65
Vendors:
cisco
CVE-2025-20336
5.3 MEDIUM

A vulnerability in the directory permissions of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 could allow an unauthenticated, remote attacker to access ...

Published: 2025-09-03
Products: 65
Vendors:
cisco

A security issue affecting multiple Cisco devices also directly impacts Stratix® 5410, 5700, and 8000 devices. This can lead to remote code execution by uploading and running malicious configurations ...

Published: 2025-09-09
Products: 0
CVE-2025-20159
5.3 MEDIUM

A vulnerability in the management interface access control list (ACL) processing feature in Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass configured ACLs for the SSH,...

Published: 2025-09-10
Products: 0
CVE-2025-20248
6.0 MEDIUM

A vulnerability in the installation process of Cisco IOS XR Software could allow an authenticated, local attacker to bypass Cisco IOS XR Software image signature verification and load unsigned softwar...

Published: 2025-09-10
Products: 0

A vulnerability in the Address Resolution Protocol (ARP) implementation of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to trigger a broadcast storm, leading to a denial of ...

Published: 2025-09-10
Products: 0