CVE-2021-34782
- EPSS 0.28%
- Veröffentlicht 06.10.2021 20:15:18
- Zuletzt bearbeitet 23.07.2025 15:26:38
A vulnerability in the API endpoints for Cisco DNA Center could allow an authenticated, remote attacker to gain access to sensitive information that should be restricted. The attacker must have valid device credentials. This vulnerability is due to i...
CVE-2021-1134
- EPSS 0.2%
- Veröffentlicht 29.06.2021 03:15:06
- Zuletzt bearbeitet 23.07.2025 15:26:38
A vulnerability in the Cisco Identity Services Engine (ISE) integration feature of the Cisco DNA Center Software could allow an unauthenticated, remote attacker to gain unauthorized access to sensitive data. The vulnerability is due to an incomplete ...
CVE-2021-1303
- EPSS 0.18%
- Veröffentlicht 20.01.2021 20:15:17
- Zuletzt bearbeitet 23.07.2025 15:26:38
A vulnerability in the user management roles of Cisco DNA Center could allow an authenticated, remote attacker to execute unauthorized commands on an affected device. The vulnerability is due to improper enforcement of actions for assigned user roles...
CVE-2021-1265
- EPSS 0.11%
- Veröffentlicht 20.01.2021 20:15:15
- Zuletzt bearbeitet 23.07.2025 15:26:38
A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtain the full unmasked running configuration of managed devices. The vulnerability is due to the config...
- EPSS 0.91%
- Veröffentlicht 20.01.2021 20:15:15
- Zuletzt bearbeitet 23.07.2025 15:26:38
A vulnerability in the Command Runner tool of Cisco DNA Center could allow an authenticated, remote attacker to perform a command injection attack. The vulnerability is due to insufficient input validation by the Command Runner tool. An attacker coul...
CVE-2021-1257
- EPSS 0.12%
- Veröffentlicht 20.01.2021 20:15:14
- Zuletzt bearbeitet 23.07.2025 15:26:38
A vulnerability in the web-based management interface of Cisco DNA Center Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack to manipulate an authenticated user into executing malicious acti...
CVE-2021-1130
- EPSS 0.17%
- Veröffentlicht 13.01.2021 22:15:14
- Zuletzt bearbeitet 23.07.2025 15:26:38
A vulnerability in the web-based management interface of Cisco DNA Center software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. The vulnerability e...
CVE-2020-3466
- EPSS 0.35%
- Veröffentlicht 26.08.2020 17:15:13
- Zuletzt bearbeitet 23.07.2025 15:26:38
Multiple vulnerabilities in the web-based management interface of Cisco DNA Center software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. The vuln...
CVE-2020-3411
- EPSS 0.73%
- Veröffentlicht 17.08.2020 18:15:12
- Zuletzt bearbeitet 23.07.2025 15:26:38
A vulnerability in Cisco DNA Center software could allow an unauthenticated remote attacker access to sensitive information on an affected system. The vulnerability is due to improper handling of authentication tokens by the affected software. An att...
CVE-2019-15253
- EPSS 0.17%
- Veröffentlicht 05.02.2020 18:15:10
- Zuletzt bearbeitet 23.07.2025 15:26:38
A vulnerability in the web-based management interface of Cisco Digital Network Architecture (DNA) Center could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web-based management in...