Latest CVE Feed
-
7.2
HIGHCVE-2021-1557
Multiple vulnerabilities in Cisco DNA Spaces Connector could allow an authenticated, local attacker to elevate privileges and execute arbitrary commands on the underlying operating system as root. These vulnerabilities are due to insufficient restrictions... Read more
Affected Products : dna_spaces\- Published: May. 22, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1555
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. T... Read more
Affected Products : wap125_firmware wap131_firmware wap150_firmware wap351_firmware wap361_firmware wap131 wap150 wap351 wap581_firmware wap361 +2 more products- Published: May. 22, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1554
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. T... Read more
Affected Products : wap125_firmware wap131_firmware wap150_firmware wap351_firmware wap361_firmware wap131 wap150 wap351 wap581_firmware wap361 +2 more products- Published: May. 22, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1553
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. T... Read more
Affected Products : wap125_firmware wap131_firmware wap150_firmware wap351_firmware wap361_firmware wap131 wap150 wap351 wap581_firmware wap361 +2 more products- Published: May. 22, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1552
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. T... Read more
Affected Products : wap125_firmware wap131_firmware wap150_firmware wap351_firmware wap361_firmware wap131 wap150 wap351 wap581_firmware wap361 +2 more products- Published: May. 22, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1551
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. T... Read more
Affected Products : wap125_firmware wap131_firmware wap150_firmware wap351_firmware wap361_firmware wap131 wap150 wap351 wap581_firmware wap361 +2 more products- Published: May. 22, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1550
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. T... Read more
Affected Products : wap125_firmware wap131_firmware wap150_firmware wap351_firmware wap361_firmware wap131 wap150 wap351 wap581_firmware wap361 +2 more products- Published: May. 22, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1549
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. T... Read more
Affected Products : wap125_firmware wap131_firmware wap150_firmware wap351_firmware wap361_firmware wap131 wap150 wap351 wap581_firmware wap361 +2 more products- Published: May. 22, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1548
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. T... Read more
Affected Products : wap125_firmware wap131_firmware wap150_firmware wap351_firmware wap361_firmware wap131 wap150 wap351 wap581_firmware wap361 +2 more products- Published: May. 22, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1547
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. T... Read more
Affected Products : wap125_firmware wap131_firmware wap150_firmware wap351_firmware wap361_firmware wap131 wap150 wap351 wap581_firmware wap361 +2 more products- Published: May. 22, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-1546
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information. This vulnerability is due to improper protections on file access through the CLI. An attacker could exploit this vulnerabilit... Read more
- Published: Sep. 23, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-1544
A vulnerability in logging mechanisms of Cisco Webex Meetings client software could allow an authenticated, local attacker to gain access to sensitive information. This vulnerability is due to unsafe logging of application actions. An attacker could explo... Read more
Affected Products : webex_meetings- Published: Jun. 04, 2021
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2021-1543
Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the following: Hijack a user session Execute arbitrary commands as a root user on the underlying operating syste... Read more
Affected Products : sf220-24p_firmware sf220-48_firmware sf220-48p_firmware sg220-26_firmware sg220-26p_firmware sg220-28mp_firmware sg220-50_firmware sg220-50p_firmware sf220-24_firmware sf220-24p +8 more products- Published: Jun. 16, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-1542
Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the following: Hijack a user session Execute arbitrary commands as a root user on the underlying operating syste... Read more
Affected Products : sf220-24p_firmware sf220-48_firmware sf220-48p_firmware sg220-26_firmware sg220-26p_firmware sg220-28mp_firmware sg220-50_firmware sg220-50p_firmware sf220-24_firmware sf220-24p +8 more products- Published: Jun. 16, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1541
Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the following: Hijack a user session Execute arbitrary commands as a root user on the underlying operating syste... Read more
Affected Products : sf220-24p_firmware sf220-48_firmware sf220-48p_firmware sg220-26_firmware sg220-26p_firmware sg220-28mp_firmware sg220-50_firmware sg220-50p_firmware sf220-24_firmware sf220-24p +8 more products- Published: Jun. 16, 2021
- Modified: Nov. 21, 2024
-
8.1
HIGHCVE-2021-1540
Multiple vulnerabilities in the authorization process of Cisco ASR 5000 Series Software (StarOS) could allow an authenticated, remote attacker to bypass authorization and execute a subset of CLI commands on an affected device. For more information about t... Read more
- Published: Jun. 04, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-1539
Multiple vulnerabilities in the authorization process of Cisco ASR 5000 Series Software (StarOS) could allow an authenticated, remote attacker to bypass authorization and execute a subset of CLI commands on an affected device. For more information about t... Read more
- Published: Jun. 04, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-1538
A vulnerability in the configuration dashboard of Cisco Common Services Platform Collector (CSPC) could allow an authenticated, remote attacker to execute arbitrary code. This vulnerability is due to insufficient sanitization of configuration entries. An ... Read more
Affected Products : common_services_platform_collector- Published: Jun. 04, 2021
- Modified: Nov. 21, 2024
-
6.2
MEDIUMCVE-2021-1537
A vulnerability in the installer software of Cisco ThousandEyes Recorder could allow an unauthenticated, local attacker to access sensitive information that is contained in the ThousandEyes Recorder installer software. This vulnerability exists because se... Read more
- Published: Jun. 04, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-1536
A vulnerability in Cisco Webex Meetings Desktop App for Windows, Cisco Webex Meetings Server, Cisco Webex Network Recording Player for Windows, and Cisco Webex Teams for Windows could allow an authenticated, local attacker to perform a DLL injection attac... Read more
- Published: Jun. 04, 2021
- Modified: Nov. 21, 2024