Medium - CVE-2022-20846 - A vulnerability in the Cisco Discovery...
A vulnerability in the Cisco Discovery Protocol implementation for Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the Cisco Discovery Protocol...
Medium - CVE-2022-20849 - A vulnerability in the Broadband Network...
A vulnerability in the Broadband Network Gateway PPP over Ethernet (PPPoE) feature of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the PPPoE process to...
High - CVE-2022-20853 - A vulnerability in the REST API of...
A vulnerability in the REST API of Cisco Expressway Series and Cisco TelePresence VCS could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack...
Medium - CVE-2022-20871 - A vulnerability in the web management interface...
A vulnerability in the web management interface of Cisco AsyncOS for Cisco Secure Web Appliance, formerly Cisco Web Security Appliance (WSA), could allow an authenticated,...
Medium - CVE-2022-20931 - A vulnerability in the version control of...
A vulnerability in the version control of Cisco TelePresence CE Software for Cisco Touch 10 Devices could allow an unauthenticated, adjacent attacker to install an older version of the...
Medium - CVE-2022-20939 - A vulnerability in the web-based management...
A vulnerability in the web-based management interface of Cisco Smart Software Manager On-Prem could allow an authenticated, remote attacker to elevate privileges on an affected system. This...
Medium - CVE-2022-20948 - A vulnerability in the web management interface...
A vulnerability in the web management interface of Cisco BroadWorks Hosted Thin Receptionist could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack...
Medium - CVE-2023-20004 - Three vulnerabilities in the CLI of Cisco...
Three vulnerabilities in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to overwrite arbitrary files on the local file system of an affected device....
Critical - CVE-2023-20036 - A vulnerability in the web UI of Cisco IND...
A vulnerability in the web UI of Cisco IND could allow an authenticated, remote attacker to execute arbitrary commands with administrative privileges on the underlying operating system of an...
NA - CVE-2023-20039 - A vulnerability in Cisco IND could allow an...
A vulnerability in Cisco IND could allow an authenticated, local attacker to read application data. This vulnerability is due to insufficient default file permissions that are applied to the...