CVE-2022-20967
- EPSS 0.08%
- Veröffentlicht 20.01.2023 07:15:11
- Zuletzt bearbeitet 21.11.2024 06:43:56
A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, remote attacker to conduct cross-site scripting attacks against other users of the application web-based management interface. Th...
CVE-2022-20964
- EPSS 5.98%
- Veröffentlicht 20.01.2023 07:15:10
- Zuletzt bearbeitet 21.11.2024 06:43:55
A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, remote attacker to inject arbitrary commands on the underlying operating system. This vulnerability is due to improper validation...
CVE-2022-20937
- EPSS 0.25%
- Veröffentlicht 04.11.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:43:51
A vulnerability in a feature that monitors RADIUS requests on Cisco Identity Services Engine (ISE) Software could allow an unauthenticated, remote attacker to negatively affect the performance of an affected device. This vulnerability is due to in...
CVE-2022-20956
- EPSS 0.02%
- Veröffentlicht 04.11.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:43:54
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to bypass authorization and access system files. This vulnerability is due to improper access control in th...
CVE-2022-20961
- EPSS 0.5%
- Veröffentlicht 04.11.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:43:55
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. ...
CVE-2022-20962
- EPSS 0.04%
- Veröffentlicht 04.11.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:43:55
A vulnerability in the Localdisk Management feature of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to make unauthorized changes to the file system of an affected device. This vulnerability is due to insuffici...
CVE-2022-20963
- EPSS 0.06%
- Veröffentlicht 04.11.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:43:55
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affe...
CVE-2022-20959
- EPSS 0.11%
- Veröffentlicht 26.10.2022 15:15:15
- Zuletzt bearbeitet 21.11.2024 06:43:55
A vulnerability in the External RESTful Services (ERS) API of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected de...
CVE-2022-20822
- EPSS 0.24%
- Veröffentlicht 26.10.2022 15:15:14
- Zuletzt bearbeitet 21.11.2024 06:43:37
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to read and delete files on an affected device. This vulnerability is due to insufficient validation of user-s...
CVE-2022-20914
- EPSS 0.16%
- Veröffentlicht 10.08.2022 09:15:08
- Zuletzt bearbeitet 21.11.2024 06:43:48
A vulnerability in the External RESTful Services (ERS) API of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker to obtain sensitive information. This vulnerability is due to excessive verbosity in a specific ...