Cisco
25,873 known vulnerabilities
Top Products
A vulnerability in the bootstrap loading of Cisco IOS XE Software could allow an authenticated, local attacker to write
A vulnerability in the Two-Way Active Measurement Protocol (TWAMP) server feature of Cisco IOS Software and Cisco IOS XE
A vulnerability in the implementation of the Simple Network Management Protocol Version 3 (SNMPv3) feature of Cisco IOS
A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, c
A vulnerability in the Wireless Network Control daemon (wncd) of Cisco IOS XE Software for Wireless LAN Controllers (WLC
A vulnerability in the access control list (ACL) programming of Cisco IOS Software that is running on Cisco Catalyst 100
A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated
Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.3, OTP-26.2.5.11, and O
A vulnerability in the custom URL parser of Cisco Webex App could allow an unauthenticated, remote attacker to persuade
A vulnerability in the web-based management interface of Cisco Secure Network Analytics could allow an authenticated, re
A vulnerability in Cisco Nexus Dashboard could allow an unauthenticated, remote attacker to enumerate LDAP user accounts
A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Pri
A vulnerability in chat messaging features of Cisco Enterprise Chat and Email (ECE) could allow an unauthenticated, remo
A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Pri
A vulnerability in the Internet Key Exchange version 2 (IKEv2) function of Cisco IOS XR Software could allow an unauthen
A vulnerability in the boot process of Cisco IOS XR Software could allow an authenticated, local attacker to bypass Cisc
A vulnerability in the Layer 3 multicast feature of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services
A vulnerability in the access control list (ACL) processing in the egress direction of Cisco IOS XR Software could allow
A vulnerability in the hybrid access control list (ACL) processing of IPv4 packets in Cisco IOS XR Software could allow
A vulnerability in the boot process of Cisco IOS XR Software could allow an authenticated, local attacker with high priv
A vulnerability in the IPv4 access control list (ACL) feature and quality of service (QoS) policy feature of Cisco IOS X
A vulnerability in the handling of specific packets that are punted from a line card to a route processor in Cisco IOS X
A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to execute arbitrary co
A vulnerability in confederation implementation for the Border Gateway Protocol (BGP) in Cisco IOS XR Software coul
A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) could allow a low-pri
A vulnerability in the interprocess communication (IPC) channel of Cisco Secure Client for Windows could allow an authen
A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Content Security Management Appliance (
A vulnerability in the system file permission handling of Cisco APIC could allow an authenticated, local attacker to ove
A vulnerability in the implementation of the internal system processes of Cisco APIC could allow an authenticated, local
A vulnerability in the CLI of Cisco APIC could allow an authenticated, local attacker to execute arbitrary commands as r
A vulnerability in the web UI of Cisco APIC could allow an authenticated, remote attacker to perform a stored XSS attack
OpenH264 is a free license codec library which supports H.264 encoding and decoding. A vulnerability in the decoding fun
A vulnerability in the debug shell of Cisco Video Phone 8875 and Cisco Desk Phone 9800 Series could allow an authenticat
A vulnerability in the email filtering mechanism of Cisco Secure Email Gateway could allow an unauthenticated, remote at
A vulnerability in the uninstaller component of Cisco AnyConnect Secure Mobility Client for Mac OS could allow an authen
Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) guest portals cou
Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) guest portals cou
A vulnerability in the implementation of the remote access functionality of Cisco AsyncOS Software for Cisco Secure Emai
A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco
A vulnerability in a policy-based Cisco Application Visibility and Control (AVC) implementation of Cisco AsyncOS Softwar
A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager a
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remo
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remo
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remo
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remo
A vulnerability in the SNMP subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allo
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remo
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remo
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remo
A vulnerability in an API of Cisco ISE could allow an authenticated, remote attacker with valid read-only credentials to
Frequently Asked Questions
How many CVEs affect Cisco?
Cisco has 25,873 CVE records in our database, including 1527 critical and 12515 high severity vulnerabilities. 90 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Cisco vulnerabilities?
Cisco has 1527 critical severity (CVSS 9.0+) and 12515 high severity (CVSS 7.0-8.9) vulnerabilities. 90 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Cisco vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Cisco products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Cisco Vulnerabilities
CyberStrike scans your infrastructure for Cisco vulnerabilities and provides real-time remediation guidance.
Get Started