VulnSea

cisco has 397 CVEs on record between 2017 and 2026. Disclosure cadence is accelerating: 122 in the last 90 days against 33 in the 90 before. The busiest recent month was September 2026 with 95. The median CVSS is 7.2 (high), with 50 rated critical. 4% have been exploited in the wild, in line with the corpus average. The median gap from publication to a KEV listing is 189 days (13 cases). The dominant weakness classes are CWE-20 (34) and CWE-400 (30). Most affected products: secure_firewall_threat_defense (75), Cisco Identity Services Engine Software (41), enterprise_nfv_infrastructure_software (21).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
4% vs 1% corpus
Median CVSS
7.2
Publish → KEV
189 d median(13)
Last 90 days
122 prev 33

Products

  • secure_firewall_threat_defense 75
  • Cisco Identity Services Engine Software 41
  • enterprise_nfv_infrastructure_software 21
  • adaptive_security_appliance 18
  • Cisco TelePresence Endpoint Software (TC/CE) 17
  • Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 16
397
Total CVEs
50
Critical
13
CISA KEV
15
Exploited

cisco vulnerabilities

CVEs affecting cisco, newest first. Open any entry for full detail, references, and exploit status.

397 CVEsRSS

CVE-2024-20265Medium· 5.9
2y ago

Cisco Access Point Software Secure Boot Bypass Vulnerability (CVE-2024-20265)

A vulnerability in the boot process of Cisco Access Point (AP) Software could allow an unauthenticated, physical attacker to bypass the Cisco Secure Boot functionality and load a software image that has been tampered with on an affected de…

▾ SunlitCisco · Cisco IOS XE SoftwareEPSS 0.25%via CSAF
CVE-2024-20267High· 8.6
2y ago

Cisco NX-OS Software MPLS IPv6 Denial of Serice Vulnerability

A vulnerability with the handling of MPLS traffic for Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause the netstack process to unexpectedly restart, which could cause the device to stop processing network traff…

▾ TwilightCisco · Cisco Nexus 3000 Series SwitchesEPSS 0.93%via CSAF
CVE-2023-20268Medium· 4.7
3y ago

Cisco Access Point Software Uncontrolled Resource Consumption Vulnerability (CVE-2023-20268)

A vulnerability in the packet processing functionality of Cisco access point (AP) software could allow an unauthenticated, adjacent attacker to exhaust resources on an affected device. This vulnerability is due to insufficient managemen…

▾ SunlitCisco · Cisco Business Wireless Access Point SoftwareEPSS 0.24%via CSAF
CVE-2023-20176Medium· 5.8
3y ago

Cisco Aironet Access Points Denial of Service

A vulnerability in the networking component of Cisco access point (AP) software could allow an unauthenticated, remote attacker to cause a temporary disruption of service. This vulnerability is due to overuse of AP resources. An attacke…

▾ SunlitCisco · Cisco Aironet Access Point SoftwareEPSS 0.65%via CSAF
CVE-2023-20033High· 8.6
3y ago

Cisco IOS XE Software for Catalyst 3650 and Catalyst 3850 Switches Denial of Service Vulnerability

A vulnerability in Cisco IOS XE Software for Cisco Catalyst 3650 and Catalyst 3850 Series Switches could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) c…

▾ TwilightCisco · Cisco IOS XE SoftwareEPSS 0.65%via CSAF
CVE-2023-20193Medium· 6.0
3y ago

A vulnerability in the Embedded Service Router (ESR) of Cisco ISE could allow an authenticated, local attacker to read, write, or delete arbitrary files on the underlying operating system and escalate their privileges to root

A vulnerability in the Embedded Service Router (ESR) of Cisco ISE could allow an authenticated, local attacker to read, write, or delete arbitrary files on the underlying operating system and escalate their privileges to root. To exploit…

▾ Sunlitcisco · identity_services_engineEPSS 0.20%via NVD
CVE-2023-20269Medium· 5.0CISA KEV
3y ago

A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a brute force attack in an …

A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a brute force attack in an …

▾ Midnightcisco · adaptive_security_appliance_softwareEPSS 25%via NVD
CVE-2023-20094Medium· 4.3
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Information Disclosure Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS could allow an attacker to elevate privileges, overwrite arbitrary files, or view sensitive data on an affected device. For more information abo…

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.27%via CSAF
CVE-2023-20093Medium· 4.4
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Overwrite Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS could allow an attacker to elevate privileges, overwrite arbitrary files, or view sensitive data on an affected device. For more information abo…

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.19%via CSAF
CVE-2023-20092Medium· 4.4
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Overwrite Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS could allow an attacker to elevate privileges, overwrite arbitrary files, or view sensitive data on an affected device. For more information abo…

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.19%via CSAF
CVE-2023-20091Medium· 5.1
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Overwrite Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS could allow an attacker to elevate privileges, overwrite arbitrary files, or view sensitive data on an affected device. For more information abo…

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.19%via CSAF
CVE-2023-20090Medium· 6.7
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Privilege Escalation Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS could allow an attacker to elevate privileges, overwrite arbitrary files, or view sensitive data on an affected device. For more information abo…

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.21%via CSAF
CVE-2023-20004Medium· 4.4
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Write Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS could allow an attacker to elevate privileges, overwrite arbitrary files, or view sensitive data on an affected device. For more information abo…

▾ SunlitCisco · Cisco RoomOS SoftwareEPSS 0.19%via CSAF
CVE-2023-20035High· 7.8
3y ago

Cisco IOS XE SD-WAN Software Command Injection Vulnerability (CVE-2023-20035)

A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbitrary commands with elevated privileges. This vulnerability is due to insufficient input validation by the system CLI…

▾ TwilightCisco · Cisco IOS XE SoftwareEPSS 0.22%via CSAF
CVE-2023-20056Medium· 6.5
3y ago

Cisco Access Point Software Denial of Service

A vulnerability in the management CLI of Cisco access point (AP) software could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input v…

▾ SunlitCisco · Cisco Aironet Access Point Software (IOS XE Controller)EPSS 0.26%via CSAF
CVE-2023-20112High· 7.4
3y ago

Cisco Access Point Software Association Request Denial of Service Vulnerability (CVE-2023-20112)

A vulnerability in Cisco access point (AP) software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient validation of certain pa…

▾ TwilightCisco · Cisco Aironet Access Point Software (IOS XE Controller)EPSS 0.30%via CSAF
CVE-2023-20097Medium· 4.6
3y ago

Cisco Access Points (AP) Command Injection Vulnerability

A vulnerability in Cisco access points (AP) software could allow an authenticated, local attacker to inject arbitrary commands and execute them with root privileges. This vulnerability is due to improper input validation of commands tha…

▾ SunlitCisco · Cisco Aironet Access Point Software (IOS XE Controller)EPSS 0.24%via CSAF
CVE-2023-20002Medium· 4.4
3y ago

Cisco TelePresence CE and RoomOS Software Server-Side Request Forgery Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an authenticated, local attacker to conduct server-side request forgery (SSRF) attacks through an affected device or …

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.16%via CSAF
CVE-2023-20008Medium· 4.4
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Write Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an authenticated, local attacker to conduct server-side request forgery (SSRF) attacks through an affected device or …

▾ SunlitCisco · Cisco RoomOS SoftwareEPSS 0.19%via CSAF
CVE-2022-20955Medium· 4.4
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Write Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an attacker to conduct path traversal attacks, view sensitive data, or write arbitrary files on an affected device. …

▾ SunlitCisco · Cisco RoomOS SoftwareEPSS 0.44%via CSAF
CVE-2022-20954Medium· 4.4
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Write Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an attacker to conduct path traversal attacks, view sensitive data, or write arbitrary files on an affected device. …

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.44%via CSAF
CVE-2022-20953Medium· 5.0
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Information Disclosure Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an attacker to conduct path traversal attacks, view sensitive data, or write arbitrary files on an affected device. …

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.43%via CSAF
CVE-2022-20811Medium· 5.5
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Path Traversal Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an attacker to conduct path traversal attacks, view sensitive data, or write arbitrary files on an affected device. …

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.70%via CSAF
CVE-2022-20776Medium· 5.1
3y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Path Traversal Vulnerability

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an attacker to conduct path traversal attacks, view sensitive data, or write arbitrary files on an affected device. …

▾ SunlitCisco · Cisco RoomOS SoftwareEPSS 0.48%via CSAF
CVE-2022-20931Medium· 6.5
3y ago

Cisco Touch 10 Device Downgrade Attack Vulnerability

A vulnerability in the version control of Cisco TelePresence CE Software for Cisco Touch 10 Devices could allow an unauthenticated, adjacent attacker to install an older version of the software on an affected device. This vulnerability …

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.27%via CSAF
CVE-2022-20793Medium· 6.8
3y ago

Cisco Touch 10 Device Insufficient Identity Verification Vulnerability

A vulnerability in pairing process of Cisco TelePresence CE Software and RoomOS Software for Cisco Touch 10 Devices could allow an unauthenticated, remote attacker to impersonate a legitimate device and pair with an affected device. Thi…

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.43%via CSAF
CVE-2022-20728Medium· 4.7
4y ago

Cisco Aironet Access Points VLAN bypass from Native VLAN Vulnerability

A vulnerability in the client forwarding code of multiple Cisco Access Points (APs) could allow an unauthenticated, adjacent attacker to inject packets from the native VLAN to clients within nonnative VLANs on an affected device. This v…

▾ SunlitCisco · Cisco Aironet Access Point Software (IOS XE Controller)EPSS 0.26%via CSAF
CVE-2022-20768Medium· 4.9
4y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Information Disclosure Vulnerability (CVE-2022-20768)

A vulnerability in the logging component of Cisco TelePresence Collaboration Endpoint (CE) and RoomOS Software could allow an authenticated, remote attacker to view sensitive information in clear text on an affected system. This vulnera…

▾ SunlitCisco · Cisco RoomOS SoftwareEPSS 0.97%via CSAF
CVE-2022-20794Medium· 4.7
4y ago

vuln-CVE-2022-20794

Multiple vulnerabilities in the web engine of Cisco Telepresence CE Software and RoomOS Software could allow a remote attacker to cause a denial of service (DoS) condition, redirect users to an attacker controlled destination or view sensi…

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.75%via CSAF
CVE-2022-20764Medium· 6.5
4y ago

Cisco RoomsOS Denial of Service Vulnerability

Multiple vulnerabilities in the web engine of Cisco Telepresence CE Software and RoomOS Software could allow a remote attacker to cause a denial of service (DoS) condition, redirect users to an attacker controlled destination or view sensi…

▾ SunlitCisco · Cisco RoomOS SoftwareEPSS 1.0%via CSAF
cisco vulnerabilities (CVEs) — page 8 · VulnSea