VulnSea

Tagged “vendor-advisory”

CVEs tagged vendor-advisory, newest first.

181 CVEsRSS

CVE-2026-20277High· 8.2
3w ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases tha…

▾ TwilightCisco · Cisco IOS XR SoftwareEPSS 0.23%via NVD
CVE-2026-20278High· 8.8
3w ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases tha…

▾ TwilightCisco · Cisco IOS XR SoftwareEPSS 0.30%via NVD
CVE-2026-20275High· 8.8
3w ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases tha…

▾ TwilightCisco · Cisco IOS XR SoftwareEPSS 0.20%via NVD
CVE-2026-20354Medium· 5.9
3w ago

Cisco Secure Email S/MIME Ciphertext Decryption Vulnerabilty

Multiple vulnerabilities in the Secure/Multipurpose Internet Mail Extensions (S/MIME) decryption functionality of Cisco Secure Email could allow an unauthenticated, remote attacker to recover plain text from encrypted email messages. Th…

▾ SunlitCisco · Cisco Secure EmailEPSS 0.16%via CSAF
CVE-2026-20318Critical· 9.6
1mo ago

Cisco Secure Workload Software Security Hardening Release August 2026 - Input Validation Vulnerabilities

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that ad…

▾ MidnightCisco · Cisco Secure WorkloadEPSS 0.44%via CSAF
CVE-2026-20317Critical· 10.0
1mo ago

Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Authentication Vulnerabilities

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that ad…

▾ MidnightCisco · Cisco Secure WorkloadEPSS 0.56%via CSAF
CVE-2026-20315Critical· 10.0
1mo ago

Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Access Control Vulnerabilities

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that ad…

▾ MidnightCisco · Cisco Secure WorkloadEPSS 0.49%via CSAF
CVE-2026-20231Critical· 9.9
1mo ago

Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Neutralization of Special Elements Vulnerabilities

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that ad…

▾ MidnightCisco · Cisco Secure WorkloadEPSS 0.53%via CSAF
CVE-2026-20349High· 8.6CISA KEV0dayPoC
1mo ago

A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause th…

A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause th…

▾ Abyssalcisco · adaptive_security_appliance_softwareEPSS 1.0%via NVD
CVE-2026-20288Medium· 6.5
1mo ago

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with Admin privileges to execute arbitrary commands on the underlying operating system of an affected system and elevat…

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with Admin privileges to execute arbitrary commands on the underlying operating system of an affected system and elevat…

▾ Sunlitcisco · unified_computing_systemEPSS 0.64%via NVD
CVE-2026-20308Medium· 4.3
1mo ago

A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote attacker with low privileges to perform a denial of service (DoS) attack against an affected device. This vulnerabilit…

A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote attacker with low privileges to perform a denial of service (DoS) attack against an affected device. This vulnerabilit…

▾ SunlitCisco · Cisco IOS XE SoftwareEPSS 0.32%via NVD
CVE-2026-20273High· 8.6
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that…

▾ TwilightCisco · Cisco IOS XE SoftwareEPSS 0.47%via NVD
CVE-2026-20272Critical· 9.8
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that …

▾ Midnightcisco · ios_xeEPSS 0.57%via NVD
CVE-2026-20271High· 8.6
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that …

▾ Twilightcisco · ios_xeEPSS 0.47%via NVD
CVE-2026-20270High· 8.6
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that …

▾ Twilightcisco · ios_xeEPSS 0.47%via NVD
CVE-2026-20269High· 8.6
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that …

▾ Twilightcisco · ios_xeEPSS 0.47%via NVD
CVE-2026-20268High· 8.6
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that …

▾ Twilightcisco · ios_xeEPSS 0.47%via NVD
CVE-2026-20267Critical· 9.0
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that …

▾ Midnightcisco · ios_xeEPSS 0.38%via NVD
CVE-2026-20316Medium· 5.3CISA KEV0dayPoC
2mo ago

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged account to access sensitive data within…

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged account to access sensitive data within…

▾ Midnightcisco · secure_firewall_management_centerEPSS 35%via NVD
CVE-2026-20090Medium· 4.8
5mo ago

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface. This vulnerability is due …

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface. This vulnerability is due …

▾ Sunlitcisco · enterprise_nfv_infrastructure_softwareEPSS 0.24%via NVD
CVE-2026-20089Medium· 4.8
5mo ago

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface. This vulnerability is due …

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface. This vulnerability is due …

▾ Sunlitcisco · enterprise_nfv_infrastructure_softwareEPSS 0.24%via NVD
CVE-2026-20088Medium· 4.8
5mo ago

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface. This vulnerability is due …

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface. This vulnerability is due …

▾ Sunlitcisco · enterprise_nfv_infrastructure_softwareEPSS 0.22%via NVD
CVE-2026-20087Medium· 4.8
5mo ago

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface. This vulnerability is due …

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface. This vulnerability is due …

▾ Sunlitcisco · enterprise_nfv_infrastructure_softwareEPSS 0.17%via NVD
CVE-2026-20085Medium· 6.1
5mo ago

A vulnerability in the web-based management interface of Cisco IMC could allow an unauthenticated, remote attacker to conduct a reflected XSS attack against a user of the interface. This vulnerability is due to insufficient validation…

A vulnerability in the web-based management interface of Cisco IMC could allow an unauthenticated, remote attacker to conduct a reflected XSS attack against a user of the interface. This vulnerability is due to insufficient validation…

▾ Sunlitcisco · enterprise_nfv_infrastructure_softwareEPSS 0.18%via NVD
CVE-2026-20079Critical· 10.0CISA KEVPoC
6mo ago

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access …

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access …

▾ Hadalcisco · secure_firewall_management_centerEPSS 88%via NVD
CVE-2026-20119High· 7.5
7mo ago

Cisco TelePresence Collaboration Endpoint Software and RoomOS Software Denial of Service Vulnerability (CVE-2026-20119)

A vulnerability in the text rendering subsystem of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affecte…

▾ TwilightCisco · Cisco RoomOS SoftwareEPSS 0.38%via CSAF
CVE-2025-20352High· 7.7CISA KEVPoC
1y ago

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow the following: An authenticated, remote attacker with low privileges could cause a denial of serv…

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow the following: An authenticated, remote attacker with low privileges could cause a denial of serv…

▾ Abyssalcisco · ios_xe_sd-wanEPSS 39%via NVD
CVE-2025-20365Medium· 4.3
1y ago

A vulnerability in the IPv6 Router Advertisement (RA) packet processing of Cisco Access Point Software could allow an unauthenticated, adjacent attacker to modify the IPv6 gateway on an affected device. This vulnerability is due to a …

A vulnerability in the IPv6 Router Advertisement (RA) packet processing of Cisco Access Point Software could allow an unauthenticated, adjacent attacker to modify the IPv6 gateway on an affected device. This vulnerability is due to a …

▾ SunlitCisco · Cisco Aironet Access Point Software (IOS XE Controller)EPSS 0.17%via NVD
CVE-2025-20364Medium· 4.3
1y ago

A vulnerability in the Device Analytics action frame processing of Cisco Wireless Access Point (AP) Software could allow an unauthenticated, adjacent attacker to inject wireless 802.11 action frames with arbitrary information. This vu…

A vulnerability in the Device Analytics action frame processing of Cisco Wireless Access Point (AP) Software could allow an unauthenticated, adjacent attacker to inject wireless 802.11 action frames with arbitrary information. This vu…

▾ SunlitCisco · Cisco Aironet Access Point Software (IOS XE Controller)EPSS 0.12%via NVD
CVE-2025-20296Medium· 5.4
1y ago

A vulnerability in the web-based management interface of Cisco UCS Manager Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface. This vulnerabilit…

A vulnerability in the web-based management interface of Cisco UCS Manager Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface. This vulnerabilit…

▾ Sunlitcisco · ucs_managerEPSS 0.23%via NVD
CVEs tagged “vendor-advisory” — page 4 · VulnSea