Cisco
25,873 known vulnerabilities
Top Products
A vulnerability in the Transport Layer Security (TLS) certificate validation functionality of Cisco Nexus 9000 Series Ap
A vulnerability in the Trusted Platform Module (TPM) functionality of software for Cisco Nexus 9000 Series Fabric Switch
A vulnerability in Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow
A vulnerability in Cisco Application Policy Infrastructure Controller (APIC) Software could allow an unauthenticated, lo
A vulnerability in the TCP ingress handler for the data interfaces that are configured with management access to Cisco F
A vulnerability in the WebVPN login process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Thre
A vulnerability in the Software Image Management feature of Cisco DNA Center could allow an authenticated, remote attack
A vulnerability in the DHCPv6 input packet processor of Cisco Prime Network Registrar could allow an unauthenticated, re
A vulnerability in the User Data Services (UDS) API of Cisco Unified Communications Manager (Unified CM) could allow an
A vulnerability in the CLI of Cisco Aironet Access Points (APs) could allow an authenticated, local attacker to access s
A vulnerability in the internal packet processing of Cisco Aironet Series Access Points (APs) could allow an unauthentic
A vulnerability in the email message scanning of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could a
A vulnerability in Locally Significant Certificate (LSC) management for the Cisco Wireless LAN Controller (WLC) could al
A vulnerability in the CLI of Cisco Aironet Series Access Points (APs) could allow an authenticated, local attacker to g
A vulnerability in the quality of service (QoS) feature of Cisco Aironet Series Access Points (APs) could allow an authe
A vulnerability in certain access control mechanisms for the Secure Shell (SSH) server implementation for Cisco Wireless
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenti
A vulnerability in the handling of Inter-Access Point Protocol (IAPP) messages by Cisco Wireless LAN Controller (WLC) So
A vulnerability in the handling of Inter-Access Point Protocol (IAPP) messages by Cisco Wireless LAN Controller (WLC) So
A vulnerability in the web-based management interface of Cisco Wireless LAN Controller (WLC) Software could allow an una
A vulnerability in the handling of Inter-Access Point Protocol (IAPP) messages by Cisco Wireless LAN Controller (WLC) So
A vulnerability in the search path processing of Cisco Directory Connector could allow an authenticated, local attacker
A vulnerability in the URL block page of Cisco Umbrella could allow an unauthenticated, remote attacker to conduct a cro
A vulnerability in the web-based interface of the Cisco Registered Envelope Service could allow an authenticated, remote
A vulnerability in the local management CLI implementation for specific commands on the Cisco UCS B-Series Blade Servers
A vulnerability in the FindMe feature of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS)
A vulnerability in the phone book feature of Cisco Expressway Series and Cisco TelePresence Video Communication Server (
A vulnerability in the XML API of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could
A vulnerability in the web-based guest portal of Cisco Identity Services Engine (ISE) could allow an authenticated, remo
A vulnerability in the web interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote atta
A vulnerability in the Protocol Independent Multicast (PIM) feature of Cisco IOS XR Software could allow an unauthentica
A vulnerability in the Event Management Service daemon (emsd) of Cisco IOS XR Software could allow an unauthenticated, r
A vulnerability in the sysadmin virtual machine (VM) on Cisco ASR 9000 Series Aggregation Services Routers running Cisco
A vulnerability in the TCP flags inspection feature for access control lists (ACLs) on Cisco ASR 9000 Series Aggregation
A vulnerability in the development shell (devshell) authentication for Cisco Aironet Series Access Points (APs) running
A vulnerability in the session identification management functionality of the web-based interface of Cisco Wireless LAN
A vulnerability in the administrative GUI configuration feature of Cisco Wireless LAN Controller (WLC) Software could al
Duo Network Gateway 1.2.9 and earlier may incorrectly utilize the results of XML DOM traversal and canonicalization APIs
A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Route
A vulnerability in the Online Help web service of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers coul
A vulnerability in the Secure Storage feature of Cisco IOS and IOS XE Software could allow an authenticated, local attac
A vulnerability in the Hot Standby Router Protocol (HSRP) subsystem of Cisco IOS and IOS XE Software could allow an unau
A vulnerability in Performance Routing Version 3 (PfRv3) of Cisco IOS XE Software could allow an unauthenticated, remote
A vulnerability in access control list (ACL) functionality of the Gigabit Ethernet Management interface of Cisco IOS XE
A vulnerability in 802.1x function of Cisco IOS Software on the Catalyst 6500 Series Switches could allow an unauthentic
A vulnerability in the Cisco Smart Call Home feature of Cisco IOS and IOS XE Software could allow an unauthenticated, re
A vulnerability in Cisco IOS XE Software could allow an authenticated, remote attacker to execute commands on the underl
A vulnerability in the Web Services Management Agent (WSMA) function of Cisco IOS XE Software could allow an authenticat
A vulnerability in the authorization subsystem of Cisco IOS XE Software could allow an authenticated but unprivileged (l
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated but unprivileged (level 1), remote a
Frequently Asked Questions
How many CVEs affect Cisco?
Cisco has 25,873 CVE records in our database, including 1527 critical and 12515 high severity vulnerabilities. 90 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Cisco vulnerabilities?
Cisco has 1527 critical severity (CVSS 9.0+) and 12515 high severity (CVSS 7.0-8.9) vulnerabilities. 90 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Cisco vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Cisco products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Cisco Vulnerabilities
CyberStrike scans your infrastructure for Cisco vulnerabilities and provides real-time remediation guidance.
Get Started