Cisco
25,873 known vulnerabilities
Top Products
A vulnerability in the web interface of Cisco Integrated Management Controller (IMC) Supervisor and Cisco UCS Director c
A vulnerability in the web interface of Cisco Emergency Responder, Cisco Unified Communications Manager, Cisco Unified C
A vulnerability in the web-based management interface of Cisco Hosted Collaboration Mediation Fulfillment could allow an
A vulnerability in the web-based management interface of Cisco Cloud Services Platform 2100 could allow an unauthenticat
A vulnerability in the TCP syslog module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat
A vulnerability in the per-user-override feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower
A vulnerability in the implementation of Traffic Flow Confidentiality (TFC) over IPsec functionality in Cisco Adaptive S
A vulnerability in the Bulk Administration Tool (BAT) for Cisco Unity Connection could allow an authenticated, remote at
A vulnerability in the DHCP service of Cisco Industrial Network Director could allow an unauthenticated, adjacent attack
A vulnerability in certain IPv4 fragment-processing functions of Cisco Remote PHY Software could allow an unauthenticate
A vulnerability in the FTP inspection engine of Cisco Firepower Threat Defense (FTD) Software could allow an unauthentic
A vulnerability in the install function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated,
A vulnerability in the Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to bypass certificate valid
A vulnerability in Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to by
A vulnerability in the cryptographic hardware accelerator driver of Cisco Adaptive Security Appliance (ASA) Software and
A vulnerability in Cisco HyperFlex Software could allow an unauthenticated, remote attacker to generate valid, signed se
A vulnerability in which the HTTP web server for Cisco Prime Infrastructure (PI) has unrestricted directory permissions
A vulnerability in the Cisco Network Plug and Play agent, also referred to as the Cisco Open Plug-n-Play agent, of Cisco
A vulnerability in the embedded test subsystem of Cisco IOS Software for Cisco 800 Series Industrial Integrated Services
A vulnerability in the embedded test subsystem of Cisco IOS Software for Cisco 800 Series Industrial Integrated Services
A vulnerability in the Image Verification feature of Cisco IOS XE Software could allow an authenticated, local attacker
A vulnerability in the implementation of Cisco Discovery Protocol functionality in Cisco IOS Software and Cisco IOS XE S
A vulnerability in the MACsec Key Agreement (MKA) using Extensible Authentication Protocol-Transport Layer Security (EAP
A vulnerability in the shell access request mechanism of Cisco IOS XE Software could allow an authenticated, local attac
A vulnerability in Cisco IOS ROM Monitor (ROMMON) Software for Cisco Catalyst 6800 Series Switches could allow an unauth
A vulnerability in the TACACS+ client subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an unauthent
A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access t
A vulnerability in the SM-1T3/E3 firmware on Cisco Second Generation Integrated Services Routers (ISR G2) and the Cisco
A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to execute comma
A vulnerability in the errdisable per VLAN feature of Cisco IOS XE Software could allow an unauthenticated, adjacent att
A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to execute comma
A vulnerability in the Network Address Translation (NAT) Session Initiation Protocol (SIP) Application Layer Gateway (AL
A vulnerability in the implementation of the cluster feature of Cisco IOS Software and Cisco IOS XE Software could allow
A vulnerability in the Precision Time Protocol (PTP) subsystem of Cisco IOS Software could allow an unauthenticated, rem
A vulnerability in the IPsec driver code of multiple Cisco IOS XE Software platforms and the Cisco ASA 5500-X Series Ada
A vulnerability in the Cisco Discovery Protocol (CDP) module of Cisco IOS XE Software Releases 16.6.1 and 16.6.2 could a
A vulnerability in the web framework of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a
A vulnerability in the web user interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to ca
A vulnerability in the IPv6 processing code of Cisco IOS and IOS XE Software could allow an unauthenticated, remote atta
A vulnerability in the Open Shortest Path First version 3 (OSPFv3) implementation in Cisco IOS and IOS XE Software could
A vulnerability in the web-based management interface of Cisco Small Business 300 Series Managed Switches could allow an
A vulnerability in the Cisco Network Plug and Play server component of Cisco Network Services Orchestrator (NSO) could a
A vulnerability in the user management functionality of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow
A vulnerability in the REST API of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, re
A vulnerability in the web-based management interface of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allo
A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance could allow an unauthentica
A vulnerability in the Cisco Webex Player for Webex Recording Format (WRF) files could allow an unauthenticated, remote
A vulnerability in the Server Message Block Version 2 (SMBv2) and Version 3 (SMBv3) protocol implementation for the Cisc
A vulnerability in the web-based management interface of Cisco Cloud Services Platform 2100 could allow an authenticated
A vulnerability in the Sourcefire tunnel control channel protocol in Cisco Firepower System Software running on Cisco Fi
Frequently Asked Questions
How many CVEs affect Cisco?
Cisco has 25,873 CVE records in our database, including 1527 critical and 12515 high severity vulnerabilities. 90 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Cisco vulnerabilities?
Cisco has 1527 critical severity (CVSS 9.0+) and 12515 high severity (CVSS 7.0-8.9) vulnerabilities. 90 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Cisco vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Cisco products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Cisco Vulnerabilities
CyberStrike scans your infrastructure for Cisco vulnerabilities and provides real-time remediation guidance.
Get Started