CVE-2025-20278
- EPSS 0.02%
- Published 04.06.2025 16:18:20
- Last modified 31.07.2025 15:02:05
A vulnerability in the CLI of multiple Cisco Unified Communications products could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system of an affected device as the root user. This vulnerability i...
CVE-2024-20325
- EPSS 0.07%
- Published 21.02.2024 17:15:09
- Last modified 06.05.2025 17:43:06
A vulnerability in the Live Data server of Cisco Unified Intelligence Center could allow an unauthenticated, local attacker to read and modify data in a repository that belongs to an internal service on an affected device. This vulnerability is du...
CVE-2023-20062
- EPSS 0.12%
- Published 03.03.2023 16:15:10
- Last modified 21.11.2024 07:40:27
Multiple vulnerabilities in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to collect sensitive information or perform a server-side request forgery (SSRF) attack on an affected system. Cisco plans to release software...
CVE-2023-20061
- EPSS 0.12%
- Published 03.03.2023 16:15:09
- Last modified 21.11.2024 07:40:27
Multiple vulnerabilities in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to collect sensitive information or perform a server-side request forgery (SSRF) attack on an affected system. Cisco plans to release software...
CVE-2023-20058
- EPSS 0.18%
- Published 20.01.2023 07:15:17
- Last modified 21.11.2024 07:40:27
A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. This vulnerability...
- EPSS 94.36%
- Published 10.12.2021 10:15:09
- Last modified 08.08.2025 18:52:00
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints. An atta...
CVE-2021-1395
- EPSS 0.32%
- Published 16.06.2021 18:15:07
- Last modified 31.07.2025 15:03:24
A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists becau...
CVE-2021-1463
- EPSS 0.34%
- Published 08.04.2021 04:15:13
- Last modified 31.07.2025 15:03:24
A vulnerability in the web-based management interface of Cisco Unified Intelligence Center Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exi...
CVE-2019-1860
- EPSS 0.28%
- Published 16.05.2019 02:29:00
- Last modified 21.11.2024 04:37:33
A vulnerability in the dashboard gadget rendering of Cisco Unified Intelligence Center could allow an unauthenticated, remote attacker to obtain or manipulate sensitive information between a user’s browser and Cisco Unified Intelligence Center....
CVE-2017-6779
- EPSS 1.28%
- Published 07.06.2018 12:29:00
- Last modified 31.07.2025 15:03:24
Multiple Cisco products are affected by a vulnerability in local file management for certain system log files of Cisco collaboration products that could allow an unauthenticated, remote attacker to cause high disk utilization, resulting in a denial o...