Latest CVE Feed
-
8.8
HIGHCVE-2022-20921
A vulnerability in the API implementation of Cisco ACI Multi-Site Orchestrator (MSO) could allow an authenticated, remote attacker to elevate privileges on an affected device. This vulnerability is due to improper authorization on specific APIs. An attack... Read more
Affected Products : aci_multi-site_orchestrator- Published: Aug. 25, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2022-20919
A vulnerability in the processing of malformed Common Industrial Protocol (CIP) packets that are sent to Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to unexpectedly reload, resul... Read more
Affected Products : ios_xe ios catalyst_8500 catalyst_8510csr catalyst_8510msr catalyst_8540csr catalyst_8540msr asr_1001 asr_1002 asr_1002-x +296 more products- Published: Sep. 30, 2022
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2022-20917
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) message processing feature of Cisco Jabber could allow an authenticated, remote attacker to manipulate the content of XMPP messages that are used by the affected application. This ... Read more
Affected Products : jabber- Published: Sep. 15, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2022-20916
A vulnerability in the web-based management interface of Cisco IoT Control Center could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-bas... Read more
Affected Products : iot_control_center- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
7.4
HIGHCVE-2022-20915
A vulnerability in the implementation of IPv6 VPN over MPLS (6VPE) with Zone-Based Firewall (ZBFW) of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerab... Read more
Affected Products : ios_xe- Published: Oct. 10, 2022
- Modified: Nov. 21, 2024
-
4.9
MEDIUMCVE-2022-20914
A vulnerability in the External RESTful Services (ERS) API of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker to obtain sensitive information. This vulnerability is due to excessive verbosity in a specific REST ... Read more
Affected Products : identity_services_engine- Published: Aug. 10, 2022
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2022-20913
A vulnerability in Cisco Nexus Dashboard could allow an authenticated, remote attacker to write arbitrary files on an affected device. This vulnerability is due to insufficient input validation in the web-based management interface of Cisco Nexus Dashboar... Read more
Affected Products : nexus_dashboard- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2022-20912
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart u... Read more
- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2022-20911
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart u... Read more
- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2022-20910
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart u... Read more
- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2022-20909
Multiple vulnerabilities in Cisco Nexus Dashboard could allow an authenticated, local attacker to elevate privileges on an affected device. These vulnerabilities are due to insufficient input validation during CLI command execution on an affected device. ... Read more
Affected Products : nexus_dashboard- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2022-20908
Multiple vulnerabilities in Cisco Nexus Dashboard could allow an authenticated, local attacker to elevate privileges on an affected device. These vulnerabilities are due to insufficient input validation during CLI command execution on an affected device. ... Read more
Affected Products : nexus_dashboard- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2022-20907
Multiple vulnerabilities in Cisco Nexus Dashboard could allow an authenticated, local attacker to elevate privileges on an affected device. These vulnerabilities are due to insufficient input validation during CLI command execution on an affected device. ... Read more
Affected Products : nexus_dashboard- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2022-20906
Multiple vulnerabilities in Cisco Nexus Dashboard could allow an authenticated, local attacker to elevate privileges on an affected device. These vulnerabilities are due to insufficient input validation during CLI command execution on an affected device. ... Read more
Affected Products : nexus_dashboard- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2022-20904
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart u... Read more
- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2022-20903
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart u... Read more
- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2022-20902
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart u... Read more
- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2022-20901
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart u... Read more
- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2022-20900
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart u... Read more
- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2022-20899
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart u... Read more
- Published: Jul. 22, 2022
- Modified: Nov. 21, 2024