Search: "cisco"

6756 CVEs found

CVE-2026-20059
6.1 MEDIUM

A vulnerability in the web-based management interface of Cisco Unity Connection could allow an unauthenticated, remote attacker to conduct a reflected XSS attack against a user of the interface. Th...

Published: 2026-04-15
Products: 12
Vendors:
cisco
CVE-2026-20060
4.7 MEDIUM

A vulnerability in the web-based management interface of Cisco Unity Connection could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability is due...

Published: 2026-04-15
Products: 11
Vendors:
cisco
CVE-2026-20061
4.3 MEDIUM

A vulnerability in the web-based management interface of Cisco Unity Connection could allow an authenticated, remote attacker to perform an SQL injection attack against an affected device. To exploit ...

Published: 2026-04-15
Products: 12
Vendors:
cisco
CVE-2026-20078
6.5 MEDIUM

Multiple vulnerabilities in Cisco Unity Connection could allow an authenticated, remote attacker to download arbitrary files from an affected system. To exploit these vulnerabilities, the attacke...

Published: 2026-04-15
Products: 12
Vendors:
cisco
CVE-2026-20081
6.5 MEDIUM

Multiple vulnerabilities in Cisco Unity Connection could allow an authenticated, remote attacker to download arbitrary files from an affected system. To exploit these vulnerabilities, the attacke...

Published: 2026-04-15
Products: 12
Vendors:
cisco
CVE-2026-20132
4.8 MEDIUM

Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker with administrative write privileges to conduc...

Published: 2026-04-15
Products: 0
CVE-2026-20136
6.0 MEDIUM

A vulnerability in the CLI of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, local attacker with administrative privileges t...

Published: 2026-04-15
Products: 0
CVE-2026-20147
9.9 CRITICAL

A vulnerability in Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit this vul...

Published: 2026-04-15
Products: 0
CVE-2026-20148
4.9 MEDIUM

A vulnerability in Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to perform path traversal attacks on the underlying operating system and read arbitrary files. To exploit t...

Published: 2026-04-15
Products: 0
CVE-2026-20152
5.3 MEDIUM

A vulnerability in the authentication service feature of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthenticated, remote attacker to bypass authentication policy requireme...

Published: 2026-04-15
Products: 0
CVE-2026-20161
5.5 MEDIUM

A vulnerability in the CLI of Cisco ThousandEyes Enterprise Agent could allow an authenticated, local attacker with low privileges to overwrite arbitrary files on the local system of an affected devic...

Published: 2026-04-15
Products: 0
CVE-2026-20170
6.1 MEDIUM

A vulnerability in the Desktop Agent functionality of Cisco Webex Contact Center could have allowed an unauthenticated, remote attacker to conduct cross-site scripting attacks. Cisco has addressed thi...

Published: 2026-04-15
Products: 0
CVE-2026-20180
9.9 CRITICAL

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit...

Published: 2026-04-15
Products: 0
CVE-2026-20184
9.8 CRITICAL

A vulnerability in the integration of single sign-on (SSO) with Control Hub in Cisco Webex Services could have allowed an unauthenticated, remote attacker to impersonate any user within the service. ...

Published: 2026-04-15
Products: 0
CVE-2026-20186
9.9 CRITICAL

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit...

Published: 2026-04-15
Products: 0

An improper access control vulnerability exists in the Cisco Intersight Device Connector for Nutanix Prism Central. The service exposes an API passthrough endpoint on TCP port 7373 that is accessible ...

Published: 2026-04-28
Products: 0