Cisco
245 known vulnerabilities
Top Products
In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, an unauthenticated user could access the
In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, a user that holds a role with the get_ta
A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Softwar
A vulnerability in the XAR file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS c
A vulnerability in the logging subsystem of Cisco RoomOS could allow an authenticated, local attacker with low privilege
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t
A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenti
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has c
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has c
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has c
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has c
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has c
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has c
A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a
An OS command injection vulnerability exists in the start_lltd() function of the "rc" binary in Cisco RV130/RV130W with
An OS command injection vulnerability exists in the sub_34984() function of the "rc" binary in Cisco RV130/RV130W with f
An OS command injection vulnerability exists in the save_syslog_to_file() function of the "httpd" binary in Cisco RV130/
An OS command injection vulnerability exists in the start_bonjour() function of the "rc" binary in Cisco RV130/RV130W wi
A vulnerability in the DMG file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS c
A vulnerability in the ALZ file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS c
A vulnerability in the PESpin file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a Do
A vulnerability in the InstallShield file format parser of ClamAV could allow an unauthenticated, remote attacker to cau
A vulnerability in the 7z file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS co
A vulnerability in the FSG file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS c
A vulnerability in the PE file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS co
A vulnerability in the browser-based version of Cisco Webex App could have allowed an unauthenticated, remote attacker t
A vulnerability in the vmadmin CLI of Cisco Umbrella Virtual Appliance could allow an authenticated, local attacker to e
A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could allow an authenti
A vulnerability in Cisco ISE and ISE-PIC could allow an unauthenticated, remote attacker to view sensitive information o
A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, r
A vulnerability in the CLI of Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, f
A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote at
A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Ma
A vulnerability in the access validation of internal REST APIs of Cisco Secure Workload could allow an unauthentica
A vulnerability in the SSL certificate handling of Cisco ThousandEyes Virtual Appliance could allow an authenticated, re
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated,
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, r
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, r
May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fi
A vulnerability in an identity management API endpoint of Cisco ISE could allow an unauthenticated, remote attacker to e
A vulnerability in the RADIUS Policy API endpoints of Cisco ISE could allow an authenticated, remote attacker with
A vulnerability in the log file download functionality of Cisco Prime Infrastructure could allow an authenticated,
A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated,
Frequently Asked Questions
How many CVEs affect Cisco?
Cisco has 245 CVE records in our database, including 18 critical and 92 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Cisco vulnerabilities?
Cisco has 18 critical severity (CVSS 9.0+) and 92 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Cisco vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Cisco products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Cisco Vulnerabilities
CyberStrike scans your infrastructure for Cisco vulnerabilities and provides real-time remediation guidance.
Get Started