Vendor
Cisco vulnerabilities
449 advisories tracked, 25 exploited in the wild according to CISA, 166 published in 2026.
Data refreshed 11 Oct 2026
Patch now
Exploited in the last two years (CISA KEV), or a 10%+ chance of exploitation in the next 30 days (EPSS).
CVE-2026-76460Identity Services Engine
Cisco Identity Services Engine Authentication Bypass VulnerabilityCVE-2026-76461Secure Email and Web
Cisco Secure Email Gateway SQL Injection VulnerabilityCVE-2026-20079Secure Firewall Management Center
Cisco Secure Firewall Management Center Authentication Bypass Remote Code Execution VulnerabilityCVE-2026-20349Secure Firewall ASA and FTD
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service VulnerabilityCVE-2026-20316Secure Firewall Management Center
Cisco Secure Firewall Management Center Software Static Credential VulnerabilityCVE-2026-20147Identity Services Engine
Cisco Identity Services Engine Remote Code Execution Vulnerability
Show all 26Show fewer
CVE-2026-20131Secure Firewall Management Center
Cisco Secure Firewall Management Center Software Remote Code Execution VulnerabilityCVE-2025-20393Secure Email and Web
Cisco Secure Email Gateway and Cisco Secure Email and Web Manager Remote Command Execution VulnerabilityCVE-2025-20362Secure Firewall ASA and FTD
Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Missing AuthorizationCVE-2025-20333Secure Firewall ASA and FTD
Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Buffer OverflowCVE-2025-20265Secure Firewall Management Center
Cisco Secure Firewall Management Center Software Radius Remote Code Execution VulnerabilityCVE-2025-20337Identity Services Engine
Cisco ISE API Unauthenticated Remote Code Execution VulnerabilityCVE-2025-20281Identity Services Engine
Cisco ISE API Unauthenticated Remote Code Execution VulnerabilityCVE-2025-20284Identity Services Engine
Cisco Identity Services Engine Authenticated Remote Code Execution VulnerabilityCVE-2025-20282Identity Services Engine
Cisco ISE API Unauthenticated Remote Code Execution VulnerabilityCVE-2025-20125Identity Services Engine
Cisco Identity Services Engine Insufficient Authorization Bypass VulnerabilityCVE-2025-20124Identity Services Engine
Cisco Identity Services Engine Java Deserialization VulnerabilityCVE-2014-2120Secure Firewall ASA and FTD
Adaptive Security Appliance (ASA) Cross-Site Scripting (XSS)CVE-2024-20481Secure Firewall ASA and FTD
ASA and FTD Denial-of-ServiceCVE-2024-20337Secure Client (AnyConnect)
A vulnerability in the SAML authentication process of Cisco Secure Client could allow an unauthenticated, r…CVE-2024-20328Secure Endpoint and ClamAV
ClamAV VirusEvent File Processing Command Injection VulnerabilityCVE-2024-20290Secure Endpoint and ClamAV
A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote attacker to…CVE-2023-20048Secure Firewall Management Center
A vulnerability in the web services interface of Cisco Firepower Management Center (FMC) Software could all…CVE-2023-20032Secure Email and Web
On Feb 15, 2023, the following in Cisco Secure Web Appliance, Cisco Secure Endpoint and othersCVE-2022-20964Identity Services Engine
A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an auth…CVE-2022-20966Identity Services Engine
A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an auth…
Products covered
Select a product to see only its advisories.
- Secure Firewall ASA and FTDASA, Firepower Threat Defense and their remote-access VPN166 tracked
- Secure Firewall Management CenterFMC, Defense Orchestrator and Security Cloud Control75 tracked
- Identity Services EngineISE and the Passive Identity Connector139 tracked
- Secure Client (AnyConnect)The VPN and endpoint client11 tracked
- Secure Email and WebSecure Email Gateway, Secure Web Appliance and their manager39 tracked
- Umbrella, Secure Access and DuoCloud security (SSE) and MFA9 tracked
- Secure Endpoint and ClamAVEDR connector and the ClamAV engine29 tracked
All tracked advisories
Newest first. Full analysis marks the CVEs we've written up in depth; the rest link to an automatic summary.
| Published | CVE | Product | Issue | Severity | EPSS | Exploited |
|---|---|---|---|---|---|---|
| CVE-2026-76426 | Identity Services Engine | Cisco ISE REST API SQL Injection Vulnerability | MEDIUM 4.9 | 0.48% | – | |
| CVE-2026-20121 | Secure Firewall ASA and FTD | CIsco FTD Bypass Access List | MEDIUM 5.3 | 0.49% | – | |
| CVE-2026-76431 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Deletion Vulnerability | MEDIUM 4.9 | 1.2% | – | |
| CVE-2026-76427 | Identity Services Engine | Cisco ISE XML External Entity Injection Vulnerability | MEDIUM 4.9 | 0.46% | – | |
| CVE-2026-76447 | Identity Services Engine | Cisco Identity Services Engine Certificate Reload Vulnerability | MEDIUM 5.3 | 0.38% | – | |
| CVE-2026-20285 | Identity Services Engine | Cisco Identity Services Engine Authorization Bypass Vulnerability | MEDIUM 4.3 | 0.36% | – | |
| CVE-2026-20287 | Identity Services Engine | Cisco Identity Services Engine Hardening Release - Improper Privlege Management Vulnerabilities | MEDIUM 6.5 | 0.21% | – | |
| CVE-2026-20286 | Identity Services Engine | Cisco Identity Services Engine Authorization Bypass Vulnerability | MEDIUM 4.3 | 0.36% | – | |
| CVE-2026-20072 | Identity Services Engine | ISE information disclosure | MEDIUM 4.9 | 0.37% | – | |
| CVE-2026-76446 | Identity Services Engine | Cisco Identity Services Engine External Entity Injection Vulnerability | MEDIUM 4.9 | 0.30% | – | |
| CVE-2026-20071 | Identity Services Engine | ISE 802.1x Session Hijack Vulnerability | LOW 3.8 | 0.15% | – | |
| CVE-2026-20300 | Identity Services Engine | Cisco Identity Services Engine SQL Injection Vulnerability | HIGH 7.1 | 0.29% | – | |
| CVE-2026-76432 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Write Vulnerability | MEDIUM 4.9 | 1.2% | – | |
| CVE-2026-76448 | Identity Services Engine | Cisco Identity Services Engine SQL Injection Vulnerability | MEDIUM 4.9 | 0.43% | – | |
| CVE-2026-76434 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Read Vulnerability | MEDIUM 4.9 | 0.38% | – | |
| CVE-2026-20120 | Secure Firewall ASA and FTD | Cisco FTD ACL bypass vulnerability | MEDIUM 5.8 | 0.41% | – | |
| CVE-2026-76444 | Identity Services Engine | Cisco Identity Services Engine Information Disclosure Vulnerability | MEDIUM 5.3 | 0.29% | – | |
| CVE-2026-76451 | Identity Services Engine | Cisco Identity Services Engine Certificate Management SQL Injection Vulnerability | MEDIUM 4.9 | 0.43% | – | |
| CVE-2026-20290 | Secure Firewall ASA and FTD | Cisco Secure Firewall Threat Defense Software Snort 2 SSL/TLS Denial of Service Vulnerability | MEDIUM 5.8 | 0.19% | – | |
| CVE-2026-20235 | Identity Services Engine | Cisco Identity Services Engine Information Disclosure Vulnerability | MEDIUM 4.9 | 0.29% | – | |
| CVE-2026-76449 | Identity Services Engine | Cisco Identity Services Engine SQL Injection Vulnerability | MEDIUM 4.9 | 0.43% | – | |
| CVE-2026-76450 | Identity Services Engine | Cisco Identity Services Engine SQL Injection Vulnerability | MEDIUM 4.9 | 0.43% | – | |
| CVE-2026-20309 | Identity Services Engine | Cisco Identity Services Engine Cross-Site Scripting Vulnerability | MEDIUM 6.1 | 0.19% | – | |
| CVE-2026-76428 | Identity Services Engine | Cisco ISE Profiler SQL Injection Vulnerability | MEDIUM 4.9 | 0.48% | – | |
| CVE-2026-76433 | Identity Services Engine | Cisco Identity Services Engine Information Disclosure Vulnerability | MEDIUM 5.3 | 1.3% | – | |
| CVE-2026-20248 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software TCP DNS Denial of Service Vulnerability | MEDIUM 6.8 | 0.34% | – | |
| CVE-2026-76439 | Identity Services Engine | Cisco Identity Services Engine Event Injection Vulnerability | MEDIUM 5.3 | 0.32% | – | |
| CVE-2026-20342 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Low Privileged Arbitrary File Download Vulnerability | HIGH 7.7 | 0.55% | – | |
| CVE-2026-20282 | Identity Services Engine | Cisco Identity Services Engine Authenticated Write Vulnerability | MEDIUM 4.9 | 0.56% | – | |
| CVE-2026-20323 | Secure Firewall ASA and FTD | Cisco Secure Firewall Management Center and Secure Firewall Threat Defense Software sftunnel Unauthorized Authentication Bypass Vulnerability | HIGH 8.3 | 0.09% | – | |
| CVE-2026-76412 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Authenticated Privilege Escalation to Root Vulnerability | HIGH 8.5 | 0.44% | – | |
| CVE-2026-20283 | Identity Services Engine | Cisco Identity Services Engine IPSec Open API Command Injection Vulnerability | MEDIUM 6.5 | 0.43% | – | |
| CVE-2026-20333 | Secure Firewall ASA and FTD | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Incorrect Comparison Vulnerabilities | HIGH 8.8 | 0.32% | – | |
| CVE-2026-76425 | Identity Services Engine | Cisco ISE SQL Injection Vulnerability | HIGH 7.6 | 0.41% | – | |
| CVE-2026-20334 | Secure Firewall ASA and FTD | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Coding Standards Vulnerabilities | HIGH 8.4 | 0.26% | – | |
| CVE-2026-20284 | Identity Services Engine | Cisco Identity Search Engine SXP REST API SQL Injection Vulnerability | CRITICAL 9.1 | 0.39% | – | |
| CVE-2026-76424 | Identity Services Engine | Cisco ISE Arbitrary File Access Vulnerability | HIGH 7.2 | 0.92% | – | |
| CVE-2026-20332 | Secure Firewall ASA and FTD | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Improper Access Control Vulnerabilities | CRITICAL 9.9 | 0.30% | – | |
| CVE-2026-20344 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software SQL Injection Vulnerability | HIGH 8.8 | 0.37% | – | |
| CVE-2026-20154 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance Software and Secure Firewall Threat Defense Software Logging Denial of Service | HIGH 8.6 | 0.40% | – | |
| CVE-2026-20343 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Information Disclosure and Disk Denial of Service Vulnerability | HIGH 7.5 | 0.45% | – | |
| CVE-2026-20222 | Secure Firewall ASA and FTD | Cisco Secure Adaptive Security Appliance Software and Secure Firewall Threat Defense Software EIGRP Denial of Service Vulnerability | HIGH 7.4 | 0.17% | – | |
| CVE-2026-20247 | Identity Services Engine | Cisco Identity Services Engine Unauthenticated SQL Injection Vulnerability | HIGH 7.5 | 0.32% | – | |
| CVE-2026-20135 | Secure Firewall ASA and FTD | Cisco Secure Firewall Threat Defense Software TLS 1.3 Denial of Service Vulnerability | HIGH 8.6 | 0.46% | – | |
| CVE-2026-76460Full analysis | Identity Services Engine | Cisco Identity Services Engine Authentication Bypass Vulnerability | CRITICAL 10 | 14% | Yes | |
| CVE-2026-20352 | Identity Services Engine | Cisco Identity Services Engine RADIUS Denial of Service Vulnerability | HIGH 8.6 | 0.40% | – | |
| CVE-2026-76413 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Single Sign-On Token Forgery of Administrator Account Vulnerability | HIGH 8.2 | 0.46% | – | |
| CVE-2026-20336 | Secure Firewall ASA and FTD | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Resource Lifetime Management Vulnerabilities | HIGH 8.8 | 0.20% | – | |
| CVE-2026-20249 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software IKEv2 Certificate Authentication Denial of Service Vulnerability | HIGH 8.6 | 0.40% | – | |
| CVE-2026-20340 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Deserialization Arbitrary Root Command Execution Vulnerability | HIGH 8.8 | 0.69% | – | |
| CVE-2026-20335 | Secure Firewall ASA and FTD | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Incorrect Calculation Vulnerabilities | HIGH 8.1 | 0.28% | – | |
| CVE-2026-20295 | Secure Firewall ASA and FTD | Cisco Secure Firewall Management Center and Secure Firewall Threat Defense Software sftunnel Memory Exhaustion Denial of Service Vulnerability | HIGH 8.6 | 0.55% | – | |
| CVE-2026-20250 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Firepower 3100 and 4200 Series DTLS Denial of Service Vulnerability | HIGH 8.6 | 0.55% | – | |
| CVE-2026-20176 | Identity Services Engine | Cisco Identity Services Engine Remote Code Execution Vulnerability | CRITICAL 9.1 | 0.78% | – | |
| CVE-2026-20341 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software sftunnel Deserialization Root Command Execution Vulnerability | CRITICAL 9.1 | 0.45% | – | |
| CVE-2026-20242 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Java Deserialization Remote Code Execution Vulnerability | CRITICAL 9.8 | 0.64% | – | |
| CVE-2026-20237 | Identity Services Engine | Cisco Identity Services Engine Hardening Release - Input Validation Vulnerabilities | CRITICAL 9.1 | 0.33% | – | |
| CVE-2026-76423 | Identity Services Engine | Cisco ISE API Authentication Bypass Vulnerability | CRITICAL 10 | 0.58% | – | |
| CVE-2026-20130 | Identity Services Engine | Cisco Identity Services Engine Hardening Release - Improper Neutralization Vulnerabilities | CRITICAL 10 | 0.40% | – | |
| CVE-2026-20192 | Identity Services Engine | Cisco Identity Services Engine Hardening Release - Access Control Vulnerabilities | CRITICAL 10 | 0.46% | – | |
| CVE-2026-20324 | Secure Firewall Management Center | Cisco Secure Firewall Management Center sftunnel Root Arbitrary Code Exectution Vulnerability | CRITICAL 9.9 | 0.45% | – | |
| CVE-2026-20194 | Identity Services Engine | Cisco Identity Services Engine Hardening Release - Incorrect Resource Transfer Vulnerabilities | CRITICAL 9.1 | 0.45% | – | |
| CVE-2026-20211 | Identity Services Engine | Cisco Identity Services Engine Remote Code Execution Vulnerability | CRITICAL 9.1 | 0.56% | – | |
| CVE-2026-20330 | Secure Firewall ASA and FTD | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Improper Neutralization Vulnerabilities | CRITICAL 9.9 | 0.34% | – | |
| CVE-2026-20329 | Secure Firewall ASA and FTD | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Exceptional Conditions Handling Vulnerabilities | CRITICAL 9.9 | 0.45% | – | |
| CVE-2026-20234 | Identity Services Engine | Cisco Identity Services Engine Hardening Release - Insuffiencently Protected Credential Vulnerabilities | CRITICAL 9.9 | 0.37% | – | |
| CVE-2026-20331 | Secure Firewall ASA and FTD | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Protection Mechanism Failure Vulnerabilities | CRITICAL 9.6 | 0.23% | – | |
| CVE-2026-76420 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Impersonated sftunnel Connection Vulnerability | CRITICAL 9 | 0.38% | – | |
| CVE-2026-20307 | Identity Services Engine | Cisco Identity Services Engine Remote Code Execution Vulnerability | CRITICAL 9.9 | 0.95% | – | |
| CVE-2026-20305 | Identity Services Engine | Cisco Identity Services Engine Command Injection Vulnerability | CRITICAL 9.1 | 1.4% | – | |
| CVE-2026-20306 | Identity Services Engine | Cisco Identity Services Engine Command Injection Vulnerability | CRITICAL 9.1 | 1.4% | – | |
| CVE-2026-76442 | Secure Email and Web | Cisco Secure Email Gateway Security Hardening Release | HIGH 7.5 | 0.47% | – | |
| CVE-2026-76461 | Secure Email and Web | Cisco Secure Email Gateway SQL Injection Vulnerability | CRITICAL 9.8 | 28% | Yes | |
| CVE-2026-76443 | Secure Email and Web | Cisco Secure Email Gateway Security Hardening Release | CRITICAL 9.8 | 0.53% | – | |
| CVE-2026-76440 | Secure Email and Web | Cisco Secure Email Gateway Security Hardening Release | CRITICAL 9.8 | 0.62% | – | |
| CVE-2026-20353 | Secure Email and Web | Cisco Secure Email Gateway Security Hardening Release | CRITICAL 9.8 | 0.40% | – | |
| CVE-2026-76441 | Secure Email and Web | Cisco Secure Email Gateway Security Hardening Release | CRITICAL 9.8 | 0.53% | – | |
| CVE-2026-20355 | Secure Email and Web | Cisco Secure Email S/MIME Ciphertext Decryption Vulnerabilty | MEDIUM 5.9 | 0.16% | – | |
| CVE-2026-20354 | Secure Email and Web | Cisco Secure Email S/MIME Ciphertext Decryption Vulnerabilty | MEDIUM 5.9 | 0.16% | – | |
| CVE-2026-20349 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerability | HIGH 8.6 | 1.0% | Yes | |
| CVE-2026-20348 | Secure Endpoint and ClamAV | ClamAV XAR File Format Processing Memory Corruption Vulnerability | HIGH 7.5 | 0.46% | – | |
| CVE-2026-20345 | Secure Endpoint and ClamAV | ClamAV GPT File Format Processing Memory Corruption Vulnerability | HIGH 7.5 | 0.46% | – | |
| CVE-2026-20339 | Secure Endpoint and ClamAV | ClamAV PESpin File Format Processing Integer Overflow Vulnerability | HIGH 7.5 | 0.46% | – | |
| CVE-2026-20347 | Secure Endpoint and ClamAV | ClamAV Mach-O File Format Processing Memory Corruption Vulnerability | HIGH 7.5 | 0.46% | – | |
| CVE-2026-20346 | Secure Endpoint and ClamAV | ClamAV PDF File Format Processing Memory Corruption Vulnerability | HIGH 7.5 | 0.45% | – | |
| CVE-2026-20338 | Secure Endpoint and ClamAV | ClamAV ZIP File Format Processing Memory Corruption Vulnerability | HIGH 7.5 | 0.47% | – | |
| CVE-2026-20337 | Secure Endpoint and ClamAV | ClamAV ZIP File Format Processing Memory Corruption Vulnerability | HIGH 7.5 | 0.51% | – | |
| CVE-2026-20316 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Static Credential Vulnerability | MEDIUM 5.3 | 35% | Yes · ransomware | |
| CVE-2026-20146 | Identity Services Engine | Cisco Identity Services Engine Path Traversal Vulnerability | MEDIUM 5.5 | 0.50% | – | |
| CVE-2026-20243 | Secure Endpoint and ClamAV | ClamAV ALZ Archive Processing Denial of Service Vulnerability | HIGH 7.5 | 0.57% | – | |
| CVE-2026-20244 | Secure Endpoint and ClamAV | ClamAV DMG File Processing Denial of Service Vulnerability | HIGH 7.5 | 0.57% | – | |
| CVE-2026-20215 | Secure Endpoint and ClamAV | ClamAV 7Zip File Format Processing Out-of-Bounds Memory Corruption Vulnerability | HIGH 7.5 | 0.57% | – | |
| CVE-2026-20217 | Secure Endpoint and ClamAV | ClamAV PESpin File Format Processing Out-of-Bounds Memory Corruption Vulnerability | HIGH 7.5 | 0.57% | – | |
| CVE-2026-20216 | Secure Endpoint and ClamAV | ClamAV InstallShield File Format Processing Resource Exhaustion Vulnerability | HIGH 7.5 | 0.57% | – | |
| CVE-2026-20213 | Secure Endpoint and ClamAV | ClamAV PE File Format Processing Out-of-Bounds Memory Corruption Vulnerability | HIGH 7.5 | 0.57% | – | |
| CVE-2026-20214 | Secure Endpoint and ClamAV | ClamAV FSG File Format Processing Out-of-Bounds Memory Corruption Vulnerability | HIGH 7.5 | 0.57% | – | |
| CVE-2026-20246 | Umbrella, Secure Access and Duo | Cisco Umbrella Virtual Appliance Privilege Escalation Vulnerability | MEDIUM 6 | 0.10% | – | |
| CVE-2026-20190 | Identity Services Engine | Cisco Identity Services Engine Information Disclosure Vulnerability | HIGH 7.5 | 0.50% | – | |
| CVE-2026-20181 | Identity Services Engine | Cisco Identity Services Engine Remote Code Execution Vulnerability | CRITICAL 9.1 | 8.9% | – | |
| CVE-2026-20193 | Identity Services Engine | Cisco Identity Services Engine Authentication Bypass Vulnerability | MEDIUM 4.3 | 0.22% | – | |
| CVE-2026-20195 | Identity Services Engine | Cisco Identity Services Engine Observable Response Discrepancy Vulnerability | MEDIUM 5.3 | 0.27% | – | |
| CVE-2026-20136 | Identity Services Engine | Cisco Identity Services Engine Authenticated Privilege Escalation Vulnerability | MEDIUM 6 | 0.50% | – | |
| CVE-2026-20180 | Identity Services Engine | Cisco Identity Services Engine Multiple Remote Code Execution Vulnerability | CRITICAL 9.9 | 6.0% | – | |
| CVE-2026-20152 | Secure Email and Web | Cisco Secure Web Appliance Authentication Service Traffic Bypass Vulnerability | MEDIUM 5.3 | 0.30% | – | |
| CVE-2026-20186 | Identity Services Engine | Cisco Identity Services Engine Multiple Authenticated Remote Code Execution Vulnerability | CRITICAL 9.9 | 5.6% | – | |
| CVE-2026-20148 | Identity Services Engine | Cisco Identity Services Engine Path Traversal Vulnerability | MEDIUM 4.9 | 6.5% | – | |
| CVE-2026-20147 | Identity Services Engine | Cisco Identity Services Engine Remote Code Execution Vulnerability | CRITICAL 9.9 | 10% | – | |
| CVE-2026-20132 | Identity Services Engine | Cisco Identity Services Engine Multiple Cross-Site Scripting Vulnerabilities | MEDIUM 4.8 | 0.17% | – | |
| CVE-2026-20012 | Secure Firewall ASA and FTD | A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE… | HIGH 8.6 | 0.35% | – | |
| CVE-2026-20064 | Secure Firewall ASA and FTD | A vulnerability in of Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticated, loc… | MEDIUM 6.5 | 0.10% | – | |
| CVE-2026-20025 | Secure Firewall ASA and FTD | A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software co… | MEDIUM 6.8 | 0.17% | – | |
| CVE-2026-20024 | Secure Firewall ASA and FTD | A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software co… | MEDIUM 6.8 | 0.20% | – | |
| CVE-2026-20023 | Secure Firewall ASA and FTD | A vulnerability in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software an… | MEDIUM 6.1 | 0.16% | – | |
| CVE-2026-20022 | Secure Firewall ASA and FTD | A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software co… | MEDIUM 6.1 | 0.20% | – | |
| CVE-2026-20021 | Secure Firewall ASA and FTD | A vulnerability in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software an… | MEDIUM 4.3 | 0.21% | – | |
| CVE-2026-20020 | Secure Firewall ASA and FTD | A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software co… | MEDIUM 6.8 | 0.26% | – | |
| CVE-2026-20016 | Secure Firewall ASA and FTD | A vulnerability in the Cisco FXOS Software CLI feature for Cisco Secure Firewall ASA Software and Secure FT… | MEDIUM 6 | 0.34% | – | |
| CVE-2026-20073 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance Software and Cisco Secure Firewall Threat Defense Software Access Control List Bypass Vulnerability | MEDIUM 5.8 | 0.40% | – | |
| CVE-2026-20102 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SAML Reflected Cross-Site Scripting Vulnerability | MEDIUM 6.1 | 0.27% | – | |
| CVE-2026-20070 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software VPN Web Services Cross-Site Scripting Vulnerability | MEDIUM 6.1 | 0.27% | – | |
| CVE-2026-20069 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software VPN Web Services Client-Side Request Smuggling Vulnerability | MEDIUM 4.3 | 0.28% | – | |
| CVE-2026-20068 | Secure Firewall ASA and FTD | Multiple Cisco Products Snort 3 TBD Denial of Service Vulnerability | MEDIUM 5.8 | 0.43% | – | |
| CVE-2026-20067 | Secure Firewall ASA and FTD | Multiple Cisco Products Snort 3 TBD Denial of Service Vulnerability | MEDIUM 5.8 | 0.47% | – | |
| CVE-2026-20066 | Secure Firewall ASA and FTD | Multiple Cisco Products Snort 3 TBD Denial of Service Vulnerability | MEDIUM 5.8 | 0.47% | – | |
| CVE-2026-20065 | Secure Firewall ASA and FTD | Multiple Cisco Products Snort 3 TBD Denial of Service Vulnerability | MEDIUM 5.8 | 0.38% | – | |
| CVE-2026-20063 | Secure Firewall ASA and FTD | Cisco Secure FTD Software Authenticated Command Injection Vulnerability | MEDIUM 6 | 0.20% | – | |
| CVE-2026-20058 | Secure Firewall ASA and FTD | Cisco Secure Firewall Threat Defense Software Snort 3 Visual Basic for Application Denial of Service Vulnerability | MEDIUM 5.8 | 0.40% | – | |
| CVE-2026-20057 | Secure Firewall ASA and FTD | Cisco Secure Firewall Threat Defense Software Snort 3 Visual Basic for Application Denial of Service Vulnerability | MEDIUM 5.8 | 0.45% | – | |
| CVE-2026-20054 | Secure Firewall ASA and FTD | Cisco Secure Firewall Threat Defense Software Snort 3 Visual Basic for Application Infinite Loop Denial of Service Vulnerability | MEDIUM 5.8 | 0.45% | – | |
| CVE-2026-20053 | Secure Firewall ASA and FTD | Cisco Secure Firewall Threat Defense Software Snort 3 Visual Basic for Application Heap Overflow Denial of Service Vulnerability | MEDIUM 5.8 | 0.43% | – | |
| CVE-2026-20052 | Secure Firewall ASA and FTD | Cisco Secure Firewall Threat Defense Software Snort 3 Memory Management Denial of Service Vulnerability | MEDIUM 5.8 | 0.43% | – | |
| CVE-2026-20050 | Secure Firewall ASA and FTD | Cisco Secure Firewall Threat Defense Decryption Policy Denial of Service Vulnerability | MEDIUM 6.8 | 0.39% | – | |
| CVE-2026-20017 | Secure Firewall ASA and FTD | Cisco Secure FTD Software Authenticated Command Injection Vulnerability | MEDIUM 6 | 0.17% | – | |
| CVE-2026-20018 | Secure Firewall ASA and FTD | Cisco Firepower Management Center Software and Firepower Threat Defense Path Traversal Vulnerability | MEDIUM 5.9 | 0.44% | – | |
| CVE-2026-20007 | Secure Firewall ASA and FTD | Cisco Secure Firewall Threat Defense Software Snort Deep Inspection Bypass Vulnerability | MEDIUM 5.8 | 0.24% | – | |
| CVE-2026-20006 | Secure Firewall ASA and FTD | Cisco Firepower Threat Defense Software and Cisco FirePOWER Services TLS with Snort 3 Denial of Service Vulnerability | MEDIUM 5.8 | 0.39% | – | |
| CVE-2026-20082 | Secure Firewall ASA and FTD | A vulnerability in the handling of the embryonic connection limits in Cisco Secure Firewall Adaptive Securi… | HIGH 8.6 | 0.42% | – | |
| CVE-2026-20062 | Secure Firewall ASA and FTD | A vulnerability in the CLI of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software in multiple… | HIGH 7.2 | 0.13% | – | |
| CVE-2026-20049 | Secure Firewall ASA and FTD | A vulnerability in the processing of Galois/Counter Mode (GCM)-encrypted Internet Key Exchange version 2 (I… | HIGH 7.7 | 0.30% | – | |
| CVE-2026-20015 | Secure Firewall ASA and FTD | A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software co… | MEDIUM 5.8 | 0.31% | – | |
| CVE-2026-20014 | Secure Firewall ASA and FTD | A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software co… | HIGH 7.7 | 0.30% | – | |
| CVE-2026-20013 | Secure Firewall ASA and FTD | A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software co… | MEDIUM 5.8 | 0.31% | – | |
| CVE-2026-20106 | Secure Firewall ASA and FTD | A vulnerability in the Remote Access SSL VPN, HTTP management and MUS functionality, of Cisco Secure Firewa… | MEDIUM 5.3 | 0.33% | – | |
| CVE-2026-20105 | Secure Firewall ASA and FTD | A vulnerability in the Remote Access SSL VPN functionality of Cisco Secure Firewall Adaptive Security Appli… | HIGH 7.7 | 0.32% | – | |
| CVE-2026-20103 | Secure Firewall ASA and FTD | A vulnerability in the Remote Access SSL VPN functionality of Cisco Secure Firewall Adaptive Security Appli… | HIGH 8.6 | 0.36% | – | |
| CVE-2026-20101 | Secure Firewall ASA and FTD | A vulnerability in the SAML 2.0 single sign-on (SSO) feature of Cisco Secure Firewall ASA Software and Secu… | HIGH 8.6 | 0.36% | – | |
| CVE-2026-20100 | Secure Firewall ASA and FTD | A vulnerability in the LUA interperter of the Remote Access SSL VPN feature of Cisco Secure Firewall Adapti… | HIGH 7.7 | 0.29% | – | |
| CVE-2026-20003 | Secure Firewall Management Center | A vulnerability in the REST API of Cisco Secure FMC Software could allow an authenticated, remote attacker… | MEDIUM 4.9 | 0.29% | – | |
| CVE-2026-20002 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authentic… | HIGH 8.1 | 0.35% | – | |
| CVE-2026-20131 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Remote Code Execution Vulnerability | CRITICAL 10 | 43% | Yes · ransomware | |
| CVE-2026-20039 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance and Firepower Threat Defense Software SSL VPN Authentication Denial of Service Vulnerability | HIGH 8.6 | 0.36% | – | |
| CVE-2026-20044 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Command Injection Vulnerability | MEDIUM 6 | 0.14% | – | |
| CVE-2026-20079 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Authentication Bypass Remote Code Execution Vulnerability | CRITICAL 10 | 88% | Yes | |
| CVE-2026-20031 | Secure Endpoint and ClamAV | ClamAV CSS Image Parsing Error Handling Denial of Service Vulnerability | MEDIUM 5.3 | 0.43% | – | |
| CVE-2026-20008 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Lua Code Injection Vulnerability | MEDIUM 6 | 0.14% | – | |
| CVE-2026-20009 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance SSH Partial Private Key Authentication Bypass Vulnerability | MEDIUM 5.3 | 0.40% | – | |
| CVE-2026-20001 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software SQL Injection Vulnerabilities | MEDIUM 6.5 | 0.34% | – | |
| CVE-2026-20005 | Secure Firewall ASA and FTD | Multiple Cisco products are affected by a in Cisco Secure Firewall Threat Defense (FTD) Software, Cisco Cyber Vision and others | MEDIUM 5.8 | 0.51% | – | |
| CVE-2026-20099 | Secure Firewall ASA and FTD | Cisco UCS Manager and FXOS Software Command Injection Vulnerability | MEDIUM 6.7 | 0.66% | – | |
| CVE-2026-20091 | Secure Firewall ASA and FTD | Cisco UCS Manager and FXOS Software Stored Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.18% | – | |
| CVE-2026-20056 | Secure Email and Web | Cisco Secure Web Appliance TBD Bypass Vulnerability | MEDIUM 4 | 0.16% | – | |
| CVE-2026-20047 | Identity Services Engine | Cisco Identity Services Engine Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.27% | – | |
| CVE-2026-20076 | Identity Services Engine | Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.27% | – | |
| CVE-2026-20029 | Identity Services Engine | Cisco Identity Services Engine XML External Entity Processing Information Disclosure Vulnerability | MEDIUM 4.9 | 6.2% | – | |
| CVE-2026-20027 | Secure Firewall ASA and FTD | Cisco Snort DCERPC Stub Data Out of Bounds Read | MEDIUM 5.3 | 0.60% | – | |
| CVE-2026-20026 | Secure Firewall ASA and FTD | Multiple Cisco Products Snort 3 DCERPC Vulnerabilities | MEDIUM 5.8 | 0.67% | – | |
| CVE-2025-20393 | Secure Email and Web | Cisco Secure Email Gateway and Cisco Secure Email and Web Manager Remote Command Execution Vulnerability | CRITICAL 10 | 32% | Yes | |
| CVE-2025-20304 | Identity Services Engine | Multiple in Cisco Identity Services Engine Software | MEDIUM 5.4 | 0.21% | – | |
| CVE-2025-20305 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote att… | MEDIUM 4.3 | 0.30% | – | |
| CVE-2025-20289 | Identity Services Engine | Multiple in Cisco Identity Services Engine Software | MEDIUM 4.8 | 0.21% | – | |
| CVE-2025-20303 | Identity Services Engine | Multiple in Cisco Identity Services Engine Software | MEDIUM 5.4 | 3.9% | – | |
| CVE-2025-20343 | Identity Services Engine | Cisco Identity Services Engine Radius Suppression Denial of Service Vulnerability | HIGH 8.6 | 0.71% | – | |
| CVE-2025-20360 | Secure Firewall ASA and FTD | Multiple Cisco Products Snort 3 MIME Denial of Service Vulnerability | MEDIUM 5.8 | 0.38% | – | |
| CVE-2025-20359 | Secure Firewall ASA and FTD | Multiple Cisco Products Snort 3 MIME Information Disclosure or Denial of Service Vulnerability | MEDIUM 6.5 | 0.48% | – | |
| CVE-2025-20363 | Secure Firewall ASA and FTD | A vulnerability in the web services of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Ci… | CRITICAL 9 | 6.9% | – | |
| CVE-2025-20362 | Secure Firewall ASA and FTD | Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Missing Authorization | MEDIUM 6.5 | 87% | Yes | |
| CVE-2025-20333 | Secure Firewall ASA and FTD | Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Buffer Overflow | CRITICAL 9.9 | 71% | Yes | |
| CVE-2025-20131 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Upload Vulnerability | MEDIUM 4.9 | 0.30% | – | |
| CVE-2025-20220 | Secure Firewall ASA and FTD | A vulnerability in the CLI of Cisco Secure Firewall Management Center (FMC) Software and Cisco Secure Firew… | MEDIUM 6 | 0.17% | – | |
| CVE-2025-20306 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Command Injection Vulnerability | MEDIUM 4.9 | 0.39% | – | |
| CVE-2025-20302 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Authorization Bypass Vulnerability | MEDIUM 4.3 | 0.31% | – | |
| CVE-2025-20301 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Authorization Bypass Vulnerability | MEDIUM 6.5 | 0.37% | – | |
| CVE-2025-20268 | Secure Firewall ASA and FTD | Cisco Secure Firewall Threat Defense Software Geolocation Remote Access VPN Bypass Vulnerability | MEDIUM 5.8 | 0.48% | – | |
| CVE-2025-20265 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Radius Remote Code Execution Vulnerability | CRITICAL 10 | 16% | – | |
| CVE-2025-20254 | Secure Firewall ASA and FTD | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco Secure Firewall Adaptive Sec… | MEDIUM 5.8 | 0.43% | – | |
| CVE-2025-20263 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Buffer Overflow Denial of Service Vulnerability | HIGH 8.6 | 0.68% | – | |
| CVE-2025-20253 | Secure Firewall ASA and FTD | Cisco IOS, IOS XE, Secure Firewall Adaptive Security Appliance, and Secure Firewall Threat Defense Software IKEv2 Denial of Service Vulnerability | HIGH 8.6 | 0.47% | – | |
| CVE-2025-20252 | Secure Firewall ASA and FTD | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco Secure Firewall Adaptive Sec… | MEDIUM 5.8 | 0.43% | – | |
| CVE-2025-20251 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Cisco Secure Firewall Threat Defense Software Authenticated Arbitrary File Deletion | HIGH 8.5 | 0.47% | – | |
| CVE-2025-20244 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access VPN Web Server Denial of Service Vulnerability | HIGH 7.7 | 0.54% | – | |
| CVE-2025-20243 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerability | HIGH 8.6 | 0.61% | – | |
| CVE-2025-20239 | Secure Firewall ASA and FTD | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Softwa… | HIGH 8.6 | 0.62% | – | |
| CVE-2025-20237 | Secure Firewall ASA and FTD | A vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewa… | MEDIUM 6 | 0.15% | – | |
| CVE-2025-20238 | Secure Firewall ASA and FTD | A vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewa… | MEDIUM 6 | 0.15% | – | |
| CVE-2025-20225 | Secure Firewall ASA and FTD | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Softwa… | MEDIUM 5.8 | 0.71% | – | |
| CVE-2025-20235 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Cross-Site Scripting Vulnerability | MEDIUM 6.1 | 0.29% | – | |
| CVE-2025-20224 | Secure Firewall ASA and FTD | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco Secure Firewall Adaptive Sec… | MEDIUM 5.8 | 0.71% | – | |
| CVE-2025-20222 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Buffer Vulnerability | HIGH 8.6 | 0.64% | – | |
| CVE-2025-20219 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Access Control Bypass Vulnerability | MEDIUM 5.3 | 0.38% | – | |
| CVE-2025-20218 | Secure Firewall Management Center | Cisco Secure Firepower Management Center Software XPATH Injection Vulnerability | MEDIUM 4.9 | 0.45% | – | |
| CVE-2025-20217 | Secure Firewall ASA and FTD | Cisco Firepower Threat Defense Intrusion Detection Denial of Service Vulnerability | HIGH 8.6 | 0.72% | – | |
| CVE-2025-20148 | Secure Firewall Management Center | Cisco Secure Firewall Management Center HTML Injection Vulnerability | HIGH 8.5 | 0.46% | – | |
| CVE-2025-20136 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance and Firepower Threat Defense Software Network Address Translation DNS Inspection Denial of Service Vulnerability | HIGH 8.6 | 0.64% | – | |
| CVE-2025-20135 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance and Firepower Threat Defense Software DHCP Denial of Service Vulnerability | MEDIUM 4.3 | 0.20% | – | |
| CVE-2025-20127 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software for Firepower 3100 and 4200 Series TLS Cipher Denial of Service Vulnerability | HIGH 7.7 | 0.67% | – | |
| CVE-2025-20133 | Secure Firewall ASA and FTD | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Authentication Targeted Denial of Service Vulnerability | HIGH 8.6 | 0.78% | – | |
| CVE-2025-20134 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance and Firepower Threat Defense Software SSL/TLS Certificate Denial of Service Vulnerability | HIGH 8.6 | 0.42% | – | |
| CVE-2025-20332 | Identity Services Engine | Cisco Identity Services Engine Authorization Bypass Vulnerability | MEDIUM 4.3 | 0.40% | – | |
| CVE-2025-20331 | Identity Services Engine | Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabiliy | MEDIUM 5.4 | 0.22% | – | |
| CVE-2025-20337 | Identity Services Engine | Cisco ISE API Unauthenticated Remote Code Execution Vulnerability | CRITICAL 10 | 68% | Yes | |
| CVE-2025-20285 | Identity Services Engine | Cisco Identity Services Engine IP Filter Access Restriction for Admin Access Configuration Bypass Vulnerability | MEDIUM 4.1 | 0.42% | – | |
| CVE-2025-20284 | Identity Services Engine | Cisco Identity Services Engine Authenticated Remote Code Execution Vulnerability | MEDIUM 6.5 | 19% | – | |
| CVE-2025-20283 | Identity Services Engine | Cisco Identity Services Engine Authenticated Remote Code Execution Vulnerability | MEDIUM 6.5 | 9.9% | – | |
| CVE-2025-20282 | Identity Services Engine | Cisco ISE API Unauthenticated Remote Code Execution Vulnerability | CRITICAL 10 | 39% | – | |
| CVE-2025-20281 | Identity Services Engine | Cisco ISE API Unauthenticated Remote Code Execution Vulnerability | CRITICAL 10 | 98% | Yes | |
| CVE-2025-20264 | Identity Services Engine | Cisco Identity Services Engine Authorization Bypass Vulnerability | MEDIUM 6.4 | 0.36% | – | |
| CVE-2025-20260 | Secure Endpoint and ClamAV | ClamAV PDF Scanning Buffer Overflow Vulnerability | CRITICAL 9.8 | 1.6% | – | |
| CVE-2025-20234 | Secure Endpoint and ClamAV | ClamAV UDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability | MEDIUM 5.3 | 0.82% | – | |
| CVE-2025-20286 | Identity Services Engine | ISE on AWS Static Credential | CRITICAL 9.9 | 1.1% | – | |
| CVE-2025-20130 | Identity Services Engine | Cisco Identity Services Engine Access Control Bypass Vulnerability | MEDIUM 4.9 | 0.51% | – | |
| CVE-2025-20258 | Umbrella, Secure Access and Duo | A vulnerability in the self-service portal of Cisco Duo could allow an unauthenticated, remote attacker to… | MEDIUM 5.4 | 0.29% | – | |
| CVE-2025-20267 | Identity Services Engine | Cisco Identity Services Stored Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.26% | – | |
| CVE-2025-20152 | Identity Services Engine | ISE restart | HIGH 8.6 | 0.70% | – | |
| CVE-2025-20182 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software, Firepower Threat Defense Software and IOS XE Software IKEv2 Denial of Service Vulnerability | HIGH 8.6 | 0.56% | – | |
| CVE-2025-20206 | Secure Client (AnyConnect) | Cisco Secure Client for Windows with VPN Posture (HostScan) Module DLL Hijacking Vulnerability | HIGH 7.1 | 0.18% | – | |
| CVE-2020-3122 | Secure Email and Web | Cisco Content Security Management Appliance Information Disclosure Vulnerability | MEDIUM 5.3 | 0.39% | – | |
| CVE-2025-20153 | Secure Email and Web | Cisco ESA mail Bypass | MEDIUM 5.8 | 0.36% | – | |
| CVE-2020-3432 | Secure Client (AnyConnect) | Cisco AnyConnect Secure Mobility Client for Mac OS File Corruption Vulnerability | MEDIUM 5.6 | 0.23% | – | |
| CVE-2025-20207 | Secure Email and Web | Cisco Secure Email Gateway, Cisco Secure Email and Web Appliance and Cisco Secure Web Appliance SNMP Polling Information Disclosure Vulnerability | MEDIUM 4.3 | 0.34% | – | |
| CVE-2025-20205 | Identity Services Engine | Multiple in Cisco Identity Services Engine Software | MEDIUM 4.8 | 0.33% | – | |
| CVE-2025-20204 | Identity Services Engine | Multiple in Cisco Identity Services Engine Software | MEDIUM 4.8 | 0.33% | – | |
| CVE-2025-20185 | Secure Email and Web | Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Privilege Escalation Vulnerability | LOW 3.4 | 0.19% | – | |
| CVE-2025-20184 | Secure Email and Web | Cisco Secure Email and Web Manager and Secure Web Appliance Command Injection Vulnerability | MEDIUM 6.5 | 0.86% | – | |
| CVE-2025-20183 | Secure Email and Web | Cisco Secure Web Appliance Range Request Bypass Vulnerability | MEDIUM 5.8 | 0.44% | – | |
| CVE-2025-20180 | Secure Email and Web | Cisco Secure Email and Web Manager and Secure Email Gateway Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.32% | – | |
| CVE-2025-20125 | Identity Services Engine | Cisco Identity Services Engine Insufficient Authorization Bypass Vulnerability | CRITICAL 9.1 | 16% | – | |
| CVE-2025-20124 | Identity Services Engine | Cisco Identity Services Engine Java Deserialization Vulnerability | CRITICAL 9.9 | 18% | – | |
| CVE-2025-20128 | Secure Endpoint and ClamAV | ClamAV OLE2 File Format Decryption Denial of Service Vulnerability | MEDIUM 5.3 | 1.6% | – | |
| CVE-2020-27124 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software SSL/TLS Denial of Service Vulnerability | HIGH 8.6 | 0.92% | – | |
| CVE-2020-3525 | Identity Services Engine | Cisco Identity Services Engine Password Disclosure to an Unauthorized Actor Vulnerability | MEDIUM 4.3 | 0.56% | – | |
| CVE-2020-3548 | Secure Email and Web | Cisco Email Security Appliance Denial Of Service Vulnerability | MEDIUM 5.3 | 0.84% | – | |
| CVE-2021-1425 | Secure Email and Web | Cisco Cisco Email Security Appliance and Content Security Management Appliance Information Disclosure Vulnerability | MEDIUM 4.3 | 0.53% | – | |
| CVE-2021-1444 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software Web Services Interface Cross-Site Scripting Vulnerability | MEDIUM 6.1 | 0.43% | – | |
| CVE-2021-1494 | Secure Firewall ASA and FTD | Multiple Cisco products are affected by a in Cisco Firepower Threat Defense Software, Cisco UTD SNORT IPS Engine Software | MEDIUM 5.8 | 1.1% | – | |
| CVE-2021-34753 | Secure Firewall ASA and FTD | Cisco Firepower Threat Defense Ethernet Industrial Protocol Policy Bypass Vulnerabilities | MEDIUM 5.8 | 0.66% | – | |
| CVE-2021-34752 | Secure Firewall ASA and FTD | Cisco Firepower Threat Defense Command Injection Vulnerabilities | MEDIUM 6.7 | 0.26% | – | |
| CVE-2021-34751 | Secure Firewall Management Center | Cisco Firepower Management Center Software Configuration Information Disclosure Vulnerability | MEDIUM 4.3 | 0.28% | – | |
| CVE-2021-34750 | Secure Firewall Management Center | Cisco Firepower Management Center Software Configuration Information Disclosure Vulnerability | MEDIUM 4.3 | 0.28% | – | |
| CVE-2022-20685 | Secure Firewall ASA and FTD | Multiple Cisco Products Snort Modbus Denial of Service Vulnerability | HIGH 7.5 | 1.5% | – | |
| CVE-2022-20871 | Secure Email and Web | Cisco Secure Web Appliance Privilege Escalation Vulnerability | MEDIUM 6.3 | 1.9% | – | |
| CVE-2024-20539 | Identity Services Engine | Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.27% | – | |
| CVE-2024-20538 | Identity Services Engine | Cisco Identity Services Engine Cross-Site Scripting Vulnerability | MEDIUM 6.1 | 0.32% | – | |
| CVE-2024-20537 | Identity Services Engine | Cisco Identity Services Engine Authorization Bypass Vulnerability | MEDIUM 6.5 | 0.46% | – | |
| CVE-2024-20532 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Read and Delete Vulnerability | MEDIUM 5.5 | 0.53% | – | |
| CVE-2024-20531 | Identity Services Engine | Cisco Identity Services Engine XML External Entity Injection Vulnerability | MEDIUM 5.5 | 0.35% | – | |
| CVE-2024-20530 | Identity Services Engine | Cisco Identity Services Engine Reflected Cross-Site Scripting Vulnerability | MEDIUM 6.1 | 0.32% | – | |
| CVE-2024-20529 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Read and Delete Vulnerability | MEDIUM 5.5 | 0.53% | – | |
| CVE-2024-20528 | Identity Services Engine | Cisco Identity Services Engine Path Traversal Vulnerability | LOW 3.8 | 0.61% | – | |
| CVE-2024-20527 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Read and Delete Vulnerability | MEDIUM 5.5 | 0.53% | – | |
| CVE-2024-20525 | Identity Services Engine | Cisco Identity Services Engine Reflected Cross-Site Scripting Vulnerability | MEDIUM 6.1 | 0.32% | – | |
| CVE-2024-20504 | Secure Email and Web | Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Stored Cross-Site Scripting Vulnerabilities | MEDIUM 5.4 | 0.28% | – | |
| CVE-2024-20487 | Identity Services Engine | Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabiliy | MEDIUM 4.3 | 0.27% | – | |
| CVE-2024-20476 | Identity Services Engine | Cisco Identity Services Engine Authorization Bypass Vulnerability | MEDIUM 4.3 | 0.35% | – | |
| CVE-2024-20526 | Secure Firewall ASA and FTD | A vulnerability in the SSH server of Cisco Adaptive Security Appliance (ASA) Software could allow an unauth… | MEDIUM 5.3 | 0.49% | – | |
| CVE-2024-20495 | Secure Firewall ASA and FTD | A vulnerability in the Remote Access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Ci… | HIGH 8.6 | 0.52% | – | |
| CVE-2024-20494 | Secure Firewall ASA and FTD | A vulnerability in the TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Software a… | HIGH 8.6 | 0.52% | – | |
| CVE-2024-20493 | Secure Firewall ASA and FTD | A vulnerability in the login authentication functionality of the Remote Access SSL VPN feature of Cisco Ada… | MEDIUM 5.3 | 0.55% | – | |
| CVE-2024-20485 | Secure Firewall ASA and FTD | A vulnerability in the VPN web server of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepow… | MEDIUM 6 | 0.19% | – | |
| CVE-2024-20482 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Soft… | MEDIUM 6.5 | 0.49% | – | |
| CVE-2024-20481 | Secure Firewall ASA and FTD | ASA and FTD Denial-of-Service | MEDIUM 5.8 | 16% | Yes | |
| CVE-2024-20473 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Soft… | MEDIUM 6.5 | 0.44% | – | |
| CVE-2024-20472 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Soft… | MEDIUM 6.5 | 0.44% | – | |
| CVE-2024-20474 | Secure Client (AnyConnect) | A vulnerability in Internet Key Exchange version 2 (IKEv2) processing of Cisco Secure Client Software could… | MEDIUM 4.3 | 0.62% | – | |
| CVE-2024-20471 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Soft… | MEDIUM 6.5 | 0.44% | – | |
| CVE-2024-20431 | Secure Firewall ASA and FTD | A vulnerability in the geolocation access control feature of Cisco Firepower Threat Defense (FTD) Software… | MEDIUM 5.8 | 0.40% | – | |
| CVE-2024-20426 | Secure Firewall ASA and FTD | A vulnerability in the Internet Key Exchange version 2 (IKEv2) protocol for VPN termination of Cisco Adapti… | HIGH 8.6 | 0.52% | – | |
| CVE-2024-20424 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Soft… | CRITICAL 9.9 | 0.94% | – | |
| CVE-2024-20415 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software c… | MEDIUM 4.8 | 0.32% | – | |
| CVE-2024-20412 | Secure Firewall ASA and FTD | A vulnerability in Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 1000, 2100, 3100, and… | CRITICAL 9.3 | 0.21% | – | |
| CVE-2024-20410 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software c… | MEDIUM 5.4 | 0.32% | – | |
| CVE-2024-20409 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software c… | MEDIUM 4.8 | 0.32% | – | |
| CVE-2024-20408 | Secure Firewall ASA and FTD | A vulnerability in the Dynamic Access Policies (DAP) feature of Cisco Adaptive Security Appliance (ASA) Sof… | HIGH 7.7 | 0.45% | – | |
| CVE-2024-20407 | Secure Firewall ASA and FTD | A vulnerability in the interaction between the TCP Intercept feature and the Snort 3 detection engine on Ci… | MEDIUM 5.8 | 0.40% | – | |
| CVE-2024-20403 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software c… | MEDIUM 4.8 | 0.30% | – | |
| CVE-2024-20402 | Secure Firewall ASA and FTD | A vulnerability in the SSL VPN feature for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firep… | HIGH 8.6 | 0.53% | – | |
| CVE-2024-20388 | Secure Firewall ASA and FTD | A vulnerability in the password change feature of Cisco Firepower Management Center (FMC) software could al… | MEDIUM 5.3 | 0.42% | – | |
| CVE-2024-20387 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco FMC Software could allow an authenticated, r… | MEDIUM 5.4 | 0.31% | – | |
| CVE-2024-20386 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software c… | MEDIUM 4.8 | 0.39% | – | |
| CVE-2024-20384 | Secure Firewall ASA and FTD | A vulnerability in the Network Service Group (NSG) feature of Cisco Adaptive Security Appliance (ASA) Softw… | MEDIUM 5.8 | 0.45% | – | |
| CVE-2024-20382 | Secure Firewall ASA and FTD | A vulnerability in the VPN web client services feature of Cisco Adaptive Security Appliance (ASA) Software… | MEDIUM 6.1 | 0.41% | – | |
| CVE-2024-20379 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Soft… | MEDIUM 6.5 | 0.62% | – | |
| CVE-2024-20377 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allo… | MEDIUM 5.4 | 0.37% | – | |
| CVE-2024-20374 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Soft… | MEDIUM 6.5 | 0.79% | – | |
| CVE-2024-20372 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software c… | MEDIUM 6.1 | 0.41% | – | |
| CVE-2024-20370 | Secure Firewall ASA and FTD | A vulnerability in the Cisco FXOS CLI feature on specific hardware platforms for Cisco Adaptive Security Ap… | MEDIUM 6 | 0.17% | – | |
| CVE-2024-20364 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software c… | MEDIUM 4.8 | 0.37% | – | |
| CVE-2024-20351 | Secure Firewall ASA and FTD | Cisco Firepower Threat Defense Software Snort Firewall Denial of Service Vulnerability | HIGH 8.6 | 0.73% | – | |
| CVE-2024-20342 | Secure Firewall ASA and FTD | Cisco Firepower Threat Defense Software Rate Filter Bypass Vulnerability | MEDIUM 5.8 | 0.49% | – | |
| CVE-2024-20341 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance WebVPN Cross-Site Scripting Vulnerability | MEDIUM 6.1 | 0.43% | – | |
| CVE-2024-20340 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Soft… | MEDIUM 6.5 | 0.45% | – | |
| CVE-2024-20339 | Secure Firewall ASA and FTD | Cisco Firepower Threat Defense Software for Firepower 2100 Series TLS Denial of Service Vulnerability | HIGH 8.6 | 0.71% | – | |
| CVE-2024-20331 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance and Firepower Threat Defense Software VPN Authentication DoS Vulnerability | MEDIUM 6.8 | 0.68% | – | |
| CVE-2024-20330 | Secure Firewall ASA and FTD | Cisco Firepower Threat Defense Software for Cisco Firepower 2100 Series TCP UDP Snort 2 and Snort 2 Denial of Service Vulnerability | HIGH 8.6 | 0.66% | – | |
| CVE-2024-20329 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software Remote Command Injection Vulnerability | CRITICAL 9.9 | 1.2% | – | |
| CVE-2024-20300 | Secure Firewall Management Center | Cisco Firepower Management Center Software Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.41% | – | |
| CVE-2024-20299 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance and Firepower Threat Defense AnyConnect Access Control List Bypass Vulnerability | MEDIUM 5.8 | 0.48% | – | |
| CVE-2024-20298 | Secure Firewall Management Center | Cisco Firepower Management Center Software Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.41% | – | |
| CVE-2024-20297 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance and Firepower Threat Defense AnyConnect Access Control List Bypass Vulnerability | MEDIUM 5.8 | 0.48% | – | |
| CVE-2024-20275 | Secure Firewall Management Center | Cisco Secure Firewall Management Center Software Backup Cluster Command Injection Vulnerability | MEDIUM 6.8 | 0.55% | – | |
| CVE-2024-20274 | Secure Firewall Management Center | Cisco Secure Firewall Management Center HTML Injection Vulnerability | MEDIUM 5.5 | 0.43% | – | |
| CVE-2024-20273 | Secure Firewall Management Center | Cisco Firepower Management Center Software Cross-Site Scripting Vulnerability | MEDIUM 6.1 | 0.44% | – | |
| CVE-2024-20260 | Secure Firewall ASA and FTD | Cisco Adaptive Security Virtual Appliance and Secure Firewall Threat Defense Virtual SSL VPN Denial of Service Vulnerability | HIGH 8.6 | 0.59% | – | |
| CVE-2024-20269 | Secure Firewall Management Center | Cisco Firepower Management Center Software Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.41% | – | |
| CVE-2024-20268 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SNMP Denial of Service Vulnerability | HIGH 7.7 | 0.64% | – | |
| CVE-2024-20264 | Secure Firewall Management Center | Cisco Firepower Management Center Software Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.41% | – | |
| CVE-2024-20515 | Identity Services Engine | Cisco Identity Services Engine Information Disclosure Vulnerability | MEDIUM 6.5 | 0.29% | – | |
| CVE-2024-20506 | Secure Endpoint and ClamAV | ClamAV Privilege Handling Escalation Vulnerability | MEDIUM 6.1 | 0.32% | – | |
| CVE-2024-20505 | Secure Endpoint and ClamAV | ClamAV Memory Handling DoS | MEDIUM 4 | 0.56% | – | |
| CVE-2024-20469 | Identity Services Engine | Cisco Identity Services Engine Command Injection Vulnerability | MEDIUM 6 | 0.47% | – | |
| CVE-2024-20417 | Identity Services Engine | Cisco Identity Services Engine REST API Blind SQL Injection Vulnerabities | MEDIUM 6.5 | 0.50% | – | |
| CVE-2024-20466 | Identity Services Engine | Cisco Identity Services Engine Sensitive Information Disclosure Vulnerability | MEDIUM 6.5 | 0.48% | – | |
| CVE-2024-20486 | Identity Services Engine | Cisco Identity Services Engine Cross-Site Request Forgery Vulnerability | MEDIUM 6.5 | 0.28% | – | |
| CVE-2024-20479 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote att… | MEDIUM 4.8 | 0.29% | – | |
| CVE-2024-20443 | Secure Firewall ASA and FTD | A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote att… | MEDIUM 5.4 | 0.29% | – | |
| CVE-2024-20429 | Secure Email and Web | A vulnerability in the web-based management interface of Cisco AsyncOS for Secure Email Gateway could allow… | MEDIUM 6.5 | 0.62% | – | |
| CVE-2024-20296 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow a… | MEDIUM 4.7 | 0.47% | – | |
| CVE-2024-20435 | Secure Email and Web | A vulnerability in the CLI of Cisco AsyncOS for Secure Web Appliance could allow an authenticated, local at… | HIGH 8.8 | 0.16% | – | |
| CVE-2024-20401 | Secure Email and Web | A vulnerability in the content scanning and message filtering features of Cisco Secure Email Gateway could… | CRITICAL 9.8 | 2.3% | – | |
| CVE-2024-20360 | Secure Firewall Management Center | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software c… | HIGH 8.8 | 0.83% | – | |
| CVE-2024-20293 | Secure Firewall ASA and FTD | A vulnerability in the activation of an access control list (ACL) on Cisco Adaptive Security Appliance (ASA… | MEDIUM 5.8 | 0.40% | – | |
| CVE-2024-20355 | Secure Firewall ASA and FTD | A vulnerability in the implementation of SAML 2.0 single sign-on (SSO) for remote access VPN services in Ci… | MEDIUM 5 | 0.33% | – | |
| CVE-2024-20361 | Secure Firewall ASA and FTD | A vulnerability in the Object Groups for Access Control Lists (ACLs) feature of Cisco Firepower Management… | MEDIUM 5.8 | 0.40% | – | |
| CVE-2024-20261 | Secure Firewall ASA and FTD | A vulnerability in the file policy feature that is used to inspect encrypted archive files of Cisco Firepow… | MEDIUM 5.8 | 0.37% | – | |
| CVE-2024-20363 | Secure Firewall ASA and FTD | Multiple Cisco products are affected by a in Cisco Firepower Threat Defense Software, Cisco UTD SNORT IPS Engine Software | MEDIUM 5.8 | 0.37% | – | |
| CVE-2024-20383 | Secure Email and Web | Cisco Secure Email and Web Manager Stored Cross-Site Scripting Vulnerability | MEDIUM 4.8 | 0.35% | – | |
| CVE-2024-20257 | Secure Email and Web | A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gate… | MEDIUM 4.8 | 0.29% | – | |
| CVE-2024-20256 | Secure Email and Web | A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and… | MEDIUM 4.8 | 0.29% | – | |
| CVE-2024-20258 | Secure Email and Web | A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and… | MEDIUM 6.1 | 0.32% | – | |
| CVE-2024-20391 | Secure Client (AnyConnect) | A vulnerability in the Network Access Manager (NAM) module of Cisco Secure Client could allow an unauthenti… | MEDIUM 6.8 | 0.35% | – | |
| CVE-2024-20392 | Secure Email and Web | A vulnerability in the web-based management API of Cisco AsyncOS Software for Cisco Secure Email Gateway co… | MEDIUM 6.1 | 0.39% | – | |
| CVE-2024-20358 | Secure Firewall ASA and FTD | A vulnerability in the Cisco Adaptive Security Appliance (ASA) restore functionality that is available in C… | MEDIUM 6 | 0.70% | – | |
| CVE-2024-20359 | Secure Firewall ASA and FTD | ASA and FTD Privilege Escalation | MEDIUM 6 | 19% | Yes | |
| CVE-2024-20353 | Secure Firewall ASA and FTD | ASA and FTD Denial of Service | HIGH 8.6 | 71% | Yes | |
| CVE-2024-20380 | Secure Endpoint and ClamAV | ClamAV HTML Parser Denial of Service Vulnerability | HIGH 7.5 | 1.1% | – | |
| CVE-2024-20368 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow a… | MEDIUM 6.5 | 0.30% | – | |
| CVE-2024-20332 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow a… | MEDIUM 5.5 | 0.37% | – | |
| CVE-2024-20292 | Umbrella, Secure Access and Duo | A vulnerability in the logging component of Cisco Duo Authentication for Windows Logon and RDP could allow… | MEDIUM 4.4 | 0.11% | – | |
| CVE-2024-20337 | Secure Client (AnyConnect) | A vulnerability in the SAML authentication process of Cisco Secure Client could allow an unauthenticated, r… | HIGH 8.2 | 30% | – | |
| CVE-2024-20338 | Secure Client (AnyConnect) | A vulnerability in the ISE Posture (System Scan) module of Cisco Secure Client for Linux could allow an aut… | HIGH 7.3 | 0.89% | – | |
| CVE-2024-20301 | Umbrella, Secure Access and Duo | A vulnerability in Cisco Duo Authentication for Windows Logon and RDP could allow an authenticated, physica… | MEDIUM 6.2 | 0.27% | – | |
| CVE-2024-20328 | Secure Endpoint and ClamAV | ClamAV VirusEvent File Processing Command Injection Vulnerability | MEDIUM 5.3 | 85% | – | |
| CVE-2024-20290 | Secure Endpoint and ClamAV | A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote attacker to… | HIGH 7.5 | 33% | – | |
| CVE-2024-20251 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow a… | MEDIUM 4.8 | 0.36% | – | |
| CVE-2023-20275 | Secure Firewall ASA and FTD | A vulnerability in the AnyConnect SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and C… | MEDIUM 4.1 | 0.42% | – | |
| CVE-2023-20241 | Secure Client (AnyConnect) | Multiple in Cisco Secure Client | MEDIUM 5.5 | 0.20% | – | |
| CVE-2023-20240 | Secure Client (AnyConnect) | Multiple in Cisco Secure Client | MEDIUM 5.5 | 0.20% | – | |
| CVE-2023-20084 | Secure Endpoint and ClamAV | A vulnerability in the endpoint software of Cisco Secure Endpoint for Windows could allow an authenticated,… | MEDIUM 5 | 0.17% | – | |
| CVE-2023-20272 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an auth… | MEDIUM 6.7 | 0.89% | – | |
| CVE-2023-20208 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote att… | MEDIUM 4.8 | 0.46% | – | |
| CVE-2023-20083 | Secure Firewall ASA and FTD | A vulnerability in ICMPv6 inspection when configured with the Snort 2 detection engine for Cisco Firepower… | HIGH 8.6 | 0.70% | – | |
| CVE-2023-20267 | Secure Firewall ASA and FTD | A vulnerability in the IP geolocation rules of Snort 3 could allow an unauthenticated, remote attacker to p… | MEDIUM 4 | 0.43% | – | |
| CVE-2023-20247 | Secure Firewall ASA and FTD | A vulnerability in the remote access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software an… | MEDIUM 5 | 0.29% | – | |
| CVE-2023-20095 | Secure Firewall ASA and FTD | A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Ci… | HIGH 8.6 | 0.65% | – | |
| CVE-2023-20246 | Secure Firewall ASA and FTD | Multiple Cisco products are affected by a in Cisco Firepower Threat Defense Software, Cisco Umbrella Insights Virtual Appliance | MEDIUM 5.8 | 0.56% | – | |
| CVE-2023-20175 | Identity Services Engine | A vulnerability in a specific Cisco ISE CLI command could allow an authenticated, local attacker to perform… | HIGH 8.8 | 0.50% | – | |
| CVE-2023-20170 | Identity Services Engine | A vulnerability in a specific Cisco ISE CLI command could allow an authenticated, local attacker to perform… | MEDIUM 6 | 0.46% | – | |
| CVE-2023-20063 | Secure Firewall ASA and FTD | Cisco Cisco Firepower Threat Defense Software and Cisco Firepower Management Center Code Injection Vulnerability | HIGH 8.2 | 0.43% | – | |
| CVE-2023-20042 | Secure Firewall ASA and FTD | A vulnerability in the AnyConnect SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and C… | MEDIUM 6.8 | 0.68% | – | |
| CVE-2023-20264 | Secure Firewall ASA and FTD | A vulnerability in the implementation of Security Assertion Markup Language (SAML) 2.0 single sign-on (SSO)… | MEDIUM 6.1 | 0.38% | – | |
| CVE-2023-20220 | Secure Firewall Management Center | Multiple in Cisco Firepower Management Center | HIGH 7.2 | 1.1% | – | |
| CVE-2023-20219 | Secure Firewall Management Center | Multiple in Cisco Firepower Management Center | HIGH 7.2 | 0.89% | – | |
| CVE-2023-20070 | Secure Firewall ASA and FTD | A vulnerability in the TLS 1.3 implementation of the Cisco Firepower Threat Defense (FTD) Software could al… | MEDIUM 4 | 0.54% | – | |
| CVE-2023-20071 | Secure Firewall ASA and FTD | Multiple Cisco products are affected by a in Cisco Firepower Threat Defense Software, Cisco Umbrella Insights Virtual Appliance and others | MEDIUM 5.8 | 0.52% | – | |
| CVE-2023-20048 | Secure Firewall Management Center | A vulnerability in the web services interface of Cisco Firepower Management Center (FMC) Software could all… | CRITICAL 9.9 | 16% | – | |
| CVE-2023-20031 | Secure Firewall ASA and FTD | A vulnerability in the SSL/TLS certificate handling of Snort 3 Detection Engine integration with Cisco Fire… | MEDIUM 4 | 0.28% | – | |
| CVE-2023-20196 | Identity Services Engine | Two vulnerabilities in Cisco ISE could allow an authenticated, remote attacker to upload arbitrary files to… | MEDIUM 4.7 | 0.57% | – | |
| CVE-2023-20195 | Identity Services Engine | Two vulnerabilities in Cisco ISE could allow an authenticated, remote attacker to upload arbitrary files to… | MEDIUM 4.7 | 0.57% | – | |
| CVE-2023-20213 | Identity Services Engine | A vulnerability in the CDP processing feature of Cisco ISE could allow an unauthenticated, adjacent attacke… | MEDIUM 4.3 | 0.30% | – | |
| CVE-2023-20245 | Secure Firewall ASA and FTD | Multiple in Cisco Adaptive Security Appliance (ASA) Software, Cisco Firepower Threat Defense Software | MEDIUM 5.8 | 0.48% | – | |
| CVE-2023-20256 | Secure Firewall ASA and FTD | Multiple in Cisco Adaptive Security Appliance (ASA) Software, Cisco Firepower Threat Defense Software | MEDIUM 5 | 0.56% | – | |
| CVE-2023-20005 | Secure Firewall Management Center | Multiple in Cisco Firepower Management Center | MEDIUM 4.8 | 0.39% | – | |
| CVE-2023-20074 | Secure Firewall Management Center | Multiple in Cisco Firepower Management Center | MEDIUM 4.8 | 0.39% | – | |
| CVE-2023-20206 | Secure Firewall Management Center | Multiple in Cisco Firepower Management Center | MEDIUM 6.1 | 0.40% | – | |
| CVE-2023-20041 | Secure Firewall Management Center | Multiple in Cisco Firepower Management Center | MEDIUM 4.8 | 0.39% | – | |
| CVE-2023-20270 | Secure Firewall ASA and FTD | A vulnerability in the interaction between the Server Message Block (SMB) protocol preprocessor and the Sno… | MEDIUM 5.8 | 0.67% | – | |
| CVE-2023-20244 | Secure Firewall ASA and FTD | A vulnerability in the internal packet processing of Cisco Firepower Threat Defense (FTD) Software for Cisc… | HIGH 8.6 | 0.77% | – | |
| CVE-2023-20155 | Secure Firewall Management Center | A vulnerability in a logging API in Cisco Firepower Management Center (FMC) Software could allow an unauthe… | HIGH 7.5 | 0.67% | – | |
| CVE-2023-20114 | Secure Firewall Management Center | A vulnerability in the file download feature of Cisco Firepower Management Center (FMC) Software could allo… | MEDIUM 6.5 | 0.51% | – | |
| CVE-2023-20086 | Secure Firewall ASA and FTD | A vulnerability in ICMPv6 processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepowe… | HIGH 8.6 | 0.65% | – | |
| CVE-2023-20177 | Secure Firewall ASA and FTD | A vulnerability in the SSL file policy implementation of Cisco Firepower Threat Defense (FTD) Software that… | MEDIUM 4 | 0.53% | – | |
| CVE-2023-20194 | Identity Services Engine | A vulnerability in the ERS API of Cisco ISE could allow an authenticated, remote attacker to read arbitrary… | MEDIUM 4.9 | 0.72% | – | |
| CVE-2023-20193 | Identity Services Engine | A vulnerability in the Embedded Service Router (ESR) of Cisco ISE could allow an authenticated, local attac… | MEDIUM 6 | 0.20% | – | |
| CVE-2023-20269 | Secure Firewall ASA and FTD | Adaptive Security Appliance and Firepower Threat Defense Unauthorized Access | MEDIUM 5 | 25% | Yes · ransomware | |
| CVE-2023-20243 | Identity Services Engine | A vulnerability in the RADIUS message processing feature of Cisco Identity Services Engine (ISE) could allo… | HIGH 8.6 | 0.92% | – | |
| CVE-2023-20234 | Secure Firewall ASA and FTD | A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to create a… | MEDIUM 4.4 | 0.18% | – | |
| CVE-2023-20212 | Secure Endpoint and ClamAV | A vulnerability in the AutoIt module of ClamAV could allow an unauthenticated, remote attacker to cause a d… | HIGH 7.5 | 3.4% | – | |
| CVE-2023-20197 | Secure Endpoint and ClamAV | A vulnerability in the filesystem image parser for Hierarchical File System Plus (HFS+) of ClamAV could all… | HIGH 7.5 | 1.2% | – | |
| CVE-2023-20111 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow a… | MEDIUM 6.5 | 0.74% | – | |
| CVE-2023-20228 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could… | MEDIUM 6.1 | 0.48% | – | |
| CVE-2020-26082 | Secure Email and Web | A vulnerability in the zip decompression engine of Cisco AsyncOS Software for Cisco Email Security Applianc… | MEDIUM 5.8 | 0.63% | – | |
| CVE-2023-20215 | Secure Email and Web | A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance could allo… | MEDIUM 5.8 | 0.62% | – | |
| CVE-2023-20006 | Secure Firewall ASA and FTD | A vulnerability in the hardware-based SSL/TLS cryptography functionality of Cisco Adaptive Security Applian… | HIGH 8.6 | 0.93% | – | |
| CVE-2023-20119 | Secure Email and Web | A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and… | MEDIUM 6.1 | 0.51% | – | |
| CVE-2023-20178 | Secure Client (AnyConnect) | A vulnerability in the client update process of Cisco AnyConnect Secure Mobility Client Software for Window… | HIGH 7.8 | 5.4% | – | |
| CVE-2023-20028 | Secure Email and Web | Cisco Secure Email Gateway, Cisco Secure Email and Web Manager, and Cisco Secure Web Appliance Cross-Site Scripting Vulnerabilities | MEDIUM 5.4 | 0.47% | – | |
| CVE-2023-20120 | Secure Email and Web | Cisco Secure Email Gateway, Cisco Secure Email and Web Manager, and Cisco Secure Web Appliance Cross-Site Scripting Vulnerabilities | MEDIUM 5.4 | 0.47% | – | |
| CVE-2023-20199 | Umbrella, Secure Access and Duo | Cisco Duo Two-Factor Authentication for macOS Authentication Bypass Vulnerability | MEDIUM 6.2 | 0.29% | – | |
| CVE-2023-20077 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Download Vulnerabilities | MEDIUM 4.9 | 0.84% | – | |
| CVE-2023-20087 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Download Vulnerabilities | MEDIUM 4.9 | 0.84% | – | |
| CVE-2023-20106 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Delete and File Read Vulnerabilities | MEDIUM 5.4 | 0.37% | – | |
| CVE-2023-20163 | Identity Services Engine | Cisco Identity Services Engine Command Injection Vulnerabilities | MEDIUM 6.5 | 1.1% | – | |
| CVE-2023-20164 | Identity Services Engine | Cisco Identity Services Engine Command Injection Vulnerabilities | MEDIUM 6.5 | 1.1% | – | |
| CVE-2023-20166 | Identity Services Engine | Cisco Identity Services Engine Path Traversal Vulnerabilities | MEDIUM 6 | 0.22% | – | |
| CVE-2023-20167 | Identity Services Engine | Cisco Identity Services Engine Path Traversal Vulnerabilities | MEDIUM 6 | 0.49% | – | |
| CVE-2023-20171 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Delete and File Read Vulnerabilities | MEDIUM 5.4 | 0.38% | – | |
| CVE-2023-20172 | Identity Services Engine | Cisco Identity Services Engine Arbitrary File Delete and File Read Vulnerabilities | MEDIUM 5.4 | 0.40% | – | |
| CVE-2023-20173 | Identity Services Engine | Cisco Identity Services Engine XML External Entity Injection Vulnerabilities | MEDIUM 4.9 | 0.77% | – | |
| CVE-2023-20174 | Identity Services Engine | Cisco Identity Services Engine XML External Entity Injection Vulnerabilities | MEDIUM 4.9 | 0.72% | – | |
| CVE-2023-20152 | Identity Services Engine | Cisco Identity Services Engine Command Injection Vulnerabilities | MEDIUM 6 | 0.45% | – | |
| CVE-2023-20121 | Identity Services Engine | Cisco Evolved Programmable Network Manager, Cisco Identity Services Engine, and Cisco Prime Infrastructure Command Injection Vulnerabilities | MEDIUM 6 | 0.20% | – | |
| CVE-2023-20122 | Identity Services Engine | Cisco Evolved Programmable Network Manager, Cisco Identity Services Engine, and Cisco Prime Infrastructure Command Injection Vulnerabilities | MEDIUM 6 | 0.20% | – | |
| CVE-2023-20123 | Umbrella, Secure Access and Duo | Cisco Duo Authentication for macOS and Duo Authentication for Windows Logon Offline Credentials Replay Vulnerability | MEDIUM 6.3 | 0.25% | – | |
| CVE-2023-20153 | Identity Services Engine | Cisco Identity Services Engine Command Injection Vulnerabilities | MEDIUM 6 | 0.45% | – | |
| CVE-2023-20107 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Low-Entropy Keys Vulnerability | MEDIUM 5.3 | 0.72% | – | |
| CVE-2023-20085 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow a… | MEDIUM 6.1 | 0.74% | – | |
| CVE-2022-20952 | Secure Email and Web | A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance, formerly… | MEDIUM 5.3 | 0.68% | – | |
| CVE-2023-20052 | Secure Endpoint and ClamAV | On Feb 15, 2023, the following in Cisco Secure Endpoint | MEDIUM 5.3 | 7.0% | – | |
| CVE-2023-20075 | Secure Email and Web | Vulnerability in the CLI of Cisco Secure Email Gateway could allow an authenticated, remote attacker to exe… | MEDIUM 6 | 0.45% | – | |
| CVE-2023-20009 | Secure Email and Web | A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secu… | MEDIUM 6.5 | 1.3% | – | |
| CVE-2023-20032 | Secure Email and Web | On Feb 15, 2023, the following in Cisco Secure Web Appliance, Cisco Secure Endpoint and others | CRITICAL 9.8 | 29% | – | |
| CVE-2023-20021 | Identity Services Engine | Cisco Identity Services Engine Privilege Escalation Vulnerabilities | MEDIUM 6 | 0.45% | – | |
| CVE-2023-20022 | Identity Services Engine | Cisco Identity Services Engine Privilege Escalation Vulnerabilities | MEDIUM 6 | 0.45% | – | |
| CVE-2023-20023 | Identity Services Engine | Cisco Identity Services Engine Privilege Escalation Vulnerabilities | MEDIUM 6 | 0.45% | – | |
| CVE-2023-20030 | Identity Services Engine | Cisco Identity Services Engine XML External Entity Injection Vulnerability | MEDIUM 6 | 0.75% | – | |
| CVE-2022-20967 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an auth… | MEDIUM 4.8 | 0.54% | – | |
| CVE-2022-20964 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an auth… | MEDIUM 6.3 | 31% | – | |
| CVE-2022-20966 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an auth… | MEDIUM 5.4 | 28% | – | |
| CVE-2022-20965 | Identity Services Engine | A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an auth… | MEDIUM 4.3 | 0.61% | – | |
| CVE-2022-20803 | Secure Endpoint and ClamAV | ClamAV Double-free Vulnerability in the OLE2 File Parser | HIGH 8.6 | 1.1% | – | |
| CVE-2020-3580 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Interface Cross-Site Scripting Vulnerabilities | MEDIUM 6.1 | 86% | Yes · ransomware | |
| CVE-2020-3433 | Secure Client (AnyConnect) | Cisco AnyConnect Secure Mobility Client for Windows DLL Hijacking Vulnerability | HIGH 7.8 | 10% | Yes · ransomware | |
| CVE-2020-3452 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Read-Only Path Traversal Vulnerability | HIGH 7.5 | 100% | Yes | |
| CVE-2020-3259 | Secure Firewall ASA and FTD | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Information Disclosure Vulnerability | HIGH 7.5 | 72% | Yes · ransomware | |
| CVE-2020-3153 | Secure Client (AnyConnect) | Cisco AnyConnect Secure Mobility Client for Windows Uncontrolled Search Path Vulnerability | MEDIUM 6.5 | 28% | Yes · ransomware | |
| CVE-2018-0296 | Secure Firewall ASA and FTD | Adaptive Security Appliance (ASA) Denial-of-Service | HIGH 7.5 | 100% | Yes | |
| CVE-2018-0147 | Umbrella, Secure Access and Duo | Secure Access Control System Java Deserialization | CRITICAL 9.8 | 18% | Yes | |
| CVE-2016-6366 | Secure Firewall ASA and FTD | Adaptive Security Appliance (ASA) SNMP Buffer Overflow | HIGH 8.8 | 88% | Yes | |
| CVE-2016-6367 | Secure Firewall ASA and FTD | Adaptive Security Appliance (ASA) CLI Remote Code Execution | HIGH 7.8 | 23% | Yes | |
| CVE-2014-2120 | Secure Firewall ASA and FTD | Adaptive Security Appliance (ASA) Cross-Site Scripting (XSS) | MEDIUM 5.4 | 23% | Yes |
Sources: Cisco security advisories, CISA KEV and FIRST EPSS. Severity is the vendor's own rating.