CVE-2021-34782
- EPSS 0.28%
- Published 06.10.2021 20:15:18
- Last modified 23.07.2025 15:26:38
A vulnerability in the API endpoints for Cisco DNA Center could allow an authenticated, remote attacker to gain access to sensitive information that should be restricted. The attacker must have valid device credentials. This vulnerability is due to i...
CVE-2021-1134
- EPSS 0.2%
- Published 29.06.2021 03:15:06
- Last modified 23.07.2025 15:26:38
A vulnerability in the Cisco Identity Services Engine (ISE) integration feature of the Cisco DNA Center Software could allow an unauthenticated, remote attacker to gain unauthorized access to sensitive data. The vulnerability is due to an incomplete ...
CVE-2021-1303
- EPSS 0.18%
- Published 20.01.2021 20:15:17
- Last modified 23.07.2025 15:26:38
A vulnerability in the user management roles of Cisco DNA Center could allow an authenticated, remote attacker to execute unauthorized commands on an affected device. The vulnerability is due to improper enforcement of actions for assigned user roles...
CVE-2021-1265
- EPSS 0.11%
- Published 20.01.2021 20:15:15
- Last modified 23.07.2025 15:26:38
A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtain the full unmasked running configuration of managed devices. The vulnerability is due to the config...
- EPSS 0.91%
- Published 20.01.2021 20:15:15
- Last modified 23.07.2025 15:26:38
A vulnerability in the Command Runner tool of Cisco DNA Center could allow an authenticated, remote attacker to perform a command injection attack. The vulnerability is due to insufficient input validation by the Command Runner tool. An attacker coul...
CVE-2021-1257
- EPSS 0.12%
- Published 20.01.2021 20:15:14
- Last modified 23.07.2025 15:26:38
A vulnerability in the web-based management interface of Cisco DNA Center Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack to manipulate an authenticated user into executing malicious acti...
CVE-2021-1130
- EPSS 0.17%
- Published 13.01.2021 22:15:14
- Last modified 23.07.2025 15:26:38
A vulnerability in the web-based management interface of Cisco DNA Center software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. The vulnerability e...
CVE-2020-3466
- EPSS 0.35%
- Published 26.08.2020 17:15:13
- Last modified 23.07.2025 15:26:38
Multiple vulnerabilities in the web-based management interface of Cisco DNA Center software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. The vuln...
CVE-2020-3411
- EPSS 0.73%
- Published 17.08.2020 18:15:12
- Last modified 23.07.2025 15:26:38
A vulnerability in Cisco DNA Center software could allow an unauthenticated remote attacker access to sensitive information on an affected system. The vulnerability is due to improper handling of authentication tokens by the affected software. An att...
CVE-2019-15253
- EPSS 0.17%
- Published 05.02.2020 18:15:10
- Last modified 23.07.2025 15:26:38
A vulnerability in the web-based management interface of Cisco Digital Network Architecture (DNA) Center could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web-based management in...