Cisco Security Vulnerabilities (CVEs)

Track 564 security vulnerabilities affecting Cisco products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

102 Critical
295 High
167 Medium
🔔 Get Alerts for Cisco
CVE-2021-1308 7.4

This vulnerability allows an unauthenticated attacker on the same network segment to execute arbitrary code, leak memory, or cause denial of service o...

Apr 8, 2021
CVE-2021-1137 7.8

This vulnerability in Cisco SD-WAN vManage Software allows unauthenticated remote attackers to execute arbitrary code or authenticated local attackers...

Apr 8, 2021
CVE-2021-1418 9.9

Multiple vulnerabilities in Cisco Jabber across Windows, macOS, and mobile platforms allow attackers to execute arbitrary code with elevated privilege...

Mar 24, 2021
CVE-2021-1411 9.9

Multiple vulnerabilities in Cisco Jabber across Windows, macOS, and mobile platforms could allow attackers to execute arbitrary code with elevated pri...

Mar 24, 2021
CVE-2021-1373 8.6

This vulnerability allows an unauthenticated remote attacker to cause a denial of service (DoS) by sending a malformed CAPWAP packet to affected Cisco...

Mar 24, 2021
CVE-2021-1352 7.4

An unauthenticated, adjacent attacker can cause a denial of service (DoS) by sending specially crafted DECnet traffic to vulnerable Cisco IOS XE devic...

Mar 24, 2021
CVE-2021-1469 9.9

Multiple vulnerabilities in Cisco Jabber across Windows, macOS, and mobile platforms allow attackers to execute arbitrary code with elevated privilege...

Mar 24, 2021
CVE-2021-1451 8.1

This vulnerability allows unauthenticated remote attackers to execute arbitrary code with root privileges on Cisco Catalyst 4500 series switches runni...

Mar 24, 2021
CVE-2021-1446 8.6

An unauthenticated remote attacker can cause Cisco IOS XE devices to reload by sending crafted DNS packets through NAT. This creates a denial-of-servi...

Mar 24, 2021
CVE-2021-1442 7.8

This vulnerability allows authenticated local attackers with low privileges to escalate to Administrator level (level 15) on Cisco IOS XE devices. Att...

Mar 24, 2021
CVE-2021-1437 7.5

This vulnerability allows unauthenticated remote attackers to download any file from Cisco Aironet access points via TFTP due to an unrestricted confi...

Mar 24, 2021
CVE-2021-1435 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary commands as root on Cisco IOS XE devices via the web UI. Attackers can i...

Mar 24, 2021
CVE-2021-1432 7.3

This vulnerability allows authenticated low-privileged users on Cisco IOS XE SD-WAN devices to execute arbitrary commands as root through command inje...

Mar 24, 2021
CVE-2021-1403 7.4

This vulnerability allows unauthenticated remote attackers to conduct cross-site WebSocket hijacking attacks against Cisco IOS XE devices with web UI ...

Mar 24, 2021
CVE-2021-1392 7.8

This vulnerability allows authenticated local attackers on Cisco IOS/IOS XE devices to retrieve Common Industrial Protocol (CIP) passwords via a misco...

Mar 24, 2021
CVE-2021-1396 9.8

Multiple vulnerabilities in Cisco Application Services Engine allow unauthenticated remote attackers to gain privileged access to host-level operation...

Feb 24, 2021
CVE-2021-1388 10.0

This vulnerability allows unauthenticated remote attackers to bypass authentication on Cisco ACI Multi-Site Orchestrator (MSO) by exploiting improper ...

Feb 24, 2021
CVE-2021-1368 8.8

A vulnerability in Cisco FXOS and NX-OS software's UDLD feature allows unauthenticated adjacent attackers to execute arbitrary code with admin privile...

Feb 24, 2021
CVE-2021-1361 9.8

This critical vulnerability allows unauthenticated remote attackers to create, delete, or overwrite arbitrary files with root privileges on affected C...

Feb 24, 2021
CVE-2021-1230 8.6

This vulnerability in Cisco Nexus 9000 Series Fabric Switches in ACI mode allows unauthenticated remote attackers to crash the BGP routing process by ...

Feb 24, 2021
CVE-2021-1227 8.1

This CSRF vulnerability in Cisco NX-OS NX-API allows unauthenticated remote attackers to trick authenticated users into executing malicious requests, ...

Feb 24, 2021
CVE-2021-1366 7.8

This vulnerability allows an authenticated local attacker on Windows systems with Cisco AnyConnect Secure Mobility Client and VPN Posture (HostScan) M...

Feb 17, 2021
CVE-2021-1370 7.8

This vulnerability allows authenticated local attackers on affected Cisco routers to escalate privileges to root by exploiting insufficient command li...

Feb 4, 2021
CVE-2021-1348 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...

Feb 4, 2021
CVE-2021-1346 7.2

This vulnerability allows authenticated attackers with administrator credentials to execute arbitrary code as root or cause denial of service on affec...

Feb 4, 2021
CVE-2021-1344 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...

Feb 4, 2021
CVE-2021-1342 7.2

This vulnerability allows authenticated attackers with administrator credentials to execute arbitrary code as root or cause denial of service on affec...

Feb 4, 2021
CVE-2021-1340 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...

Feb 4, 2021
CVE-2021-1338 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...

Feb 4, 2021
CVE-2021-1336 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...

Feb 4, 2021
CVE-2021-1334 7.2

This vulnerability allows authenticated attackers with administrator credentials to execute arbitrary code as root or cause denial of service on affec...

Feb 4, 2021
CVE-2021-1332 7.2

This vulnerability allows authenticated attackers with administrator credentials to execute arbitrary code as root or cause denial of service on affec...

Feb 4, 2021
CVE-2021-1330 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...

Feb 4, 2021
CVE-2021-1328 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...

Feb 4, 2021
CVE-2021-1326 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...

Feb 4, 2021
CVE-2021-1324 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...

Feb 4, 2021
CVE-2021-1322 7.2

This vulnerability allows authenticated attackers with administrator credentials to execute arbitrary code as root or cause denial of service on affec...

Feb 4, 2021
CVE-2021-1320 7.2

This vulnerability allows authenticated remote attackers to execute arbitrary code as root or cause denial of service on affected Cisco Small Business...

Feb 4, 2021
CVE-2021-1318 7.2

This vulnerability allows authenticated remote attackers with administrator credentials to execute arbitrary commands with root privileges on affected...

Feb 4, 2021
CVE-2021-1316 7.2

This vulnerability allows authenticated remote attackers with administrator credentials to execute arbitrary commands with root privileges on affected...

Feb 4, 2021
CVE-2021-1314 7.2

This vulnerability allows authenticated remote attackers with administrator credentials to execute arbitrary commands with root privileges on affected...

Feb 4, 2021
CVE-2021-1297 7.5

This vulnerability allows unauthenticated remote attackers to conduct directory traversal attacks and overwrite restricted files on affected Cisco Sma...

Feb 4, 2021
CVE-2021-1295 9.8

This critical vulnerability allows unauthenticated remote attackers to execute arbitrary code as root on affected Cisco Small Business VPN routers. At...

Feb 4, 2021
CVE-2021-1293 9.8

This critical vulnerability allows unauthenticated remote attackers to execute arbitrary code as root on affected Cisco Small Business VPN routers. At...

Feb 4, 2021
CVE-2021-1291 9.8

This vulnerability allows unauthenticated remote attackers to execute arbitrary code as root on affected Cisco Small Business VPN routers. It affects ...

Feb 4, 2021
CVE-2021-1289 9.8

This critical vulnerability allows unauthenticated remote attackers to execute arbitrary code as root on affected Cisco Small Business VPN routers. At...

Feb 4, 2021
CVE-2021-1268 7.4

This vulnerability in Cisco IOS XR Software allows an unauthenticated attacker on the same network segment as management interfaces to cause IPv6 floo...

Feb 4, 2021
CVE-2021-1248 8.8

This vulnerability allows authenticated remote attackers to execute arbitrary SQL commands on Cisco Data Center Network Manager (DCNM) through multipl...

Jan 20, 2021
CVE-2021-1241 8.6

Multiple vulnerabilities in Cisco SD-WAN products allow unauthenticated remote attackers to execute denial-of-service attacks against affected devices...

Jan 20, 2021
CVE-2021-1225 9.1

CVE-2021-1225 allows unauthenticated remote attackers to execute SQL injection attacks against Cisco SD-WAN vManage Software's web management interfac...

Jan 20, 2021

Why Monitor Cisco Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 564+ known vulnerabilities affecting Cisco products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Cisco packages in under 60 seconds. No agents required - completely agentless scanning that works across Cisco deployments.

Free vulnerability database: Access detailed information about every Cisco CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Cisco CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Cisco CVEs Free