CVE-2025-20357
- EPSS 0.04%
- Veröffentlicht 01.10.2025 17:15:39
- Zuletzt bearbeitet 02.10.2025 19:11:46
A vulnerability in the web-based management interface of Cisco Cyber Vision Center could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the interface. This vulnerability is due to insufficie...
CVE-2025-20356
- EPSS 0.04%
- Veröffentlicht 01.10.2025 17:15:38
- Zuletzt bearbeitet 02.10.2025 19:11:46
A vulnerability in the web-based management interface of Cisco Cyber Vision Center could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the interface. This vulnerability is due to insufficie...
CVE-2022-20685
- EPSS 0.59%
- Veröffentlicht 15.11.2024 16:15:21
- Zuletzt bearbeitet 24.06.2025 14:47:25
A vulnerability in the Modbus preprocessor of the Snort detection engine could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an integer overflow while proce...
CVE-2023-20071
- EPSS 0.02%
- Veröffentlicht 01.11.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 07:40:29
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. This vulnerability is due to a flaw in the FTP module ...
CVE-2022-20943
- EPSS 0.03%
- Veröffentlicht 15.11.2022 21:15:35
- Zuletzt bearbeitet 21.11.2024 06:43:52
Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multiple Cisco products could allow an unauthenticated, remote attacker to bypass the configured policies or cause a denial of service (D...
CVE-2022-20922
- EPSS 0.03%
- Veröffentlicht 15.11.2022 21:15:30
- Zuletzt bearbeitet 21.11.2024 06:43:49
Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multiple Cisco products could allow an unauthenticated, remote attacker to bypass the configured policies or cause a denial of service (D...
- EPSS 94.36%
- Veröffentlicht 10.12.2021 10:15:09
- Zuletzt bearbeitet 08.08.2025 18:52:00
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints. An atta...