6.1

CVSS3.1

CVE-2022-20657 - Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Cross-Site Scripting Vuln…

A vulnerability in the web-based management interface of Cisco PI and Cisco EPNM could allow an unauthenticated, remote attacker to conduct an XSS attack against a user of the interface of an affected device. This vulnerability exists because the web-based management interface does not p…

📅 Published: Nov. 15, 2024, 3:39 p.m. 🔄 Last Modified: July 31, 2025, 3:05 p.m.

6.1

CVSS3.1

CVE-2022-20663 - Secure Network Analytics Cross-Site Scripting Vulnerability

A vulnerability in the web-based management interface of Cisco Secure Network Analytics, formerly Stealthwatch Enterprise, could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. The vulnerability is due to insufficient v…

📅 Published: Nov. 15, 2024, 3:38 p.m. 🔄 Last Modified: July 31, 2025, 3:49 p.m.

7.5

CVSS3.1

CVE-2022-20685 - Multiple Cisco Products Snort Modbus Denial of Service Vulnerability

A vulnerability in the Modbus preprocessor of the Snort detection engine could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an integer overflow while processing Modbus traffic. An attacker could exploit t…

📅 Published: Nov. 15, 2024, 3:36 p.m. 🔄 Last Modified: June 24, 2025, 2:47 p.m.

6.5

CVSS3.1

CVE-2022-20656 - Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Path Traversal Vulnerabil…

A vulnerability in the web-based management interface of Cisco PI and Cisco EPNM could allow an authenticated, remote attacker to conduct a path traversal attack on an affected device. To exploit this vulnerability, the attacker must have valid credentials on the system. This vulnerabi…

📅 Published: Nov. 15, 2024, 3:36 p.m. 🔄 Last Modified: July 31, 2025, 3:05 p.m.

5.3

CVSS3.1

CVE-2022-20766 - Cisco ATA 190 Series Analog Telephone Adapter firmware Cisco Discovery Protocol Denial of Service V…

A vulnerability in the Cisco Discovery Protocol functionality of Cisco ATA 190 Series Adaptive Telephone Adapter firmware could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to an out-of-bounds read when processing Cis…

📅 Published: Nov. 15, 2024, 3:35 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS3.1

CVE-2024-50351 - LibreNMS has a Reflected XSS ('Cross-site Scripting') in librenms/includes/functions.php

LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Reflected Cross-Site Scripting (XSS) vulnerability in the "section" parameter of the "logs" tab of a device allows attackers to inject arbitrary JavaScript. This vulnerability results in the execution of malicious code wh…

📅 Published: Nov. 15, 2024, 3:34 p.m. 🔄 Last Modified: Nov. 21, 2024, 11:37 p.m.

6.8

CVSS3.1

CVE-2022-20793 - Cisco Touch 10 Device Insufficient Identity Verification Vulnerability

A vulnerability in pairing process of Cisco TelePresence CE Software and RoomOS Software for Cisco Touch 10 Devices could allow an unauthenticated, remote attacker to impersonate a legitimate device and pair with an affected device. This vulnerability is due to insufficient identity veri…

📅 Published: Nov. 15, 2024, 3:34 p.m. 🔄 Last Modified: July 30, 2025, 5:12 p.m.

7.4

CVSS3.1

CVE-2022-20814 - Cisco Expressway Series and Cisco TelePresence VCS Improper Certificate Validation Vulnerability

A vulnerability in the certificate validation of Cisco Expressway-C and Cisco TelePresence VCS could allow an unauthenticated, remote attacker to gain unauthorized access to sensitive data.  The vulnerability is due to a lack of validation of the SSL server certificate that an a…

📅 Published: Nov. 15, 2024, 3:32 p.m. 🔄 Last Modified: July 31, 2025, 3:44 p.m.

4.3

CVSS3.1

CVE-2022-20846 - Cisco IOS XR Software Cisco Discovery Protocol Buffer Overflow Vulnerability

A vulnerability in the Cisco Discovery Protocol implementation for Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the Cisco Discovery Protocol process to reload on an affected device. This vulnerability is due to a heap buffer overflow in certain Ci…

📅 Published: Nov. 15, 2024, 3:32 p.m. 🔄 Last Modified: Aug. 5, 2025, 2:07 p.m.

6

CVSS3.1

CVE-2022-20845 - Cisco Network Convergence System 4000 Series TL1 Denial of Service Vulnerability

A vulnerability in the TL1 function of Cisco Network Convergence System (NCS) 4000 Series could allow an authenticated, local attacker to cause a memory leak in the TL1 process. This vulnerability is due to TL1 not freeing memory under some conditions. An attacker could exploit this vulnerabi…

📅 Published: Nov. 15, 2024, 3:32 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 7858 of 34,919
« previous page » next page
Filters