CVE-2020-3393
- EPSS 0.03%
- Published 24.09.2020 18:15:17
- Last modified 19.12.2024 13:52:35
A vulnerability in the application-hosting subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to root on an affected device. The attacker could execute IOS XE commands outside the application-hosting...
CVE-2020-3396
- EPSS 0.05%
- Published 24.09.2020 18:15:17
- Last modified 21.11.2024 05:30:56
A vulnerability in the file system on the pluggable USB 3.0 Solid State Drive (SSD) for Cisco IOS XE Software could allow an authenticated, physical attacker to remove the USB 3.0 SSD and modify sensitive areas of the file system, including the names...
CVE-2020-3399
- EPSS 0.56%
- Published 24.09.2020 18:15:17
- Last modified 21.11.2024 05:30:57
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of s...
CVE-2020-3400
- EPSS 0.2%
- Published 24.09.2020 18:15:17
- Last modified 21.11.2024 05:30:57
A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to utilize parts of the web UI for which they are not authorized.The vulnerability is due to insufficient authorization of web UI access requ...
CVE-2020-3403
- EPSS 0.1%
- Published 24.09.2020 18:15:17
- Last modified 21.11.2024 05:30:57
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker to inject a command to the underlying operating system that will execute with root privileges upon the next reboot of the device. The authenticated user ...
CVE-2019-16009
- EPSS 2.79%
- Published 23.09.2020 01:15:13
- Last modified 21.11.2024 04:29:55
A vulnerability in the web UI of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protection...
CVE-2020-3232
- EPSS 0.33%
- Published 03.06.2020 18:15:21
- Last modified 21.11.2024 05:30:37
A vulnerability in the Simple Network Management Protocol (SNMP) implementation in Cisco ASR 920 Series Aggregation Services Router model ASR920-12SZ-IM could allow an authenticated, remote attacker to cause the device to reload. The vulnerability is...
CVE-2020-3235
- EPSS 0.29%
- Published 03.06.2020 18:15:21
- Last modified 21.11.2024 05:30:37
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software on Catalyst 4500 Series Switches could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. Th...
CVE-2020-3221
- EPSS 0.5%
- Published 03.06.2020 18:15:20
- Last modified 21.11.2024 05:30:35
A vulnerability in the Flexible NetFlow Version 9 packet processor of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affecte...
CVE-2020-3222
- EPSS 0.07%
- Published 03.06.2020 18:15:20
- Last modified 21.11.2024 05:30:35
A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to bypass access control restrictions on an affected device. The vulnerability is due to the presence of a proxy servi...