|
198781
|
8.8 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker with read-only privileges to inject IOS commands to an affected device.…
|
CWE-78
OS Command
|
CVE-2020-3224
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198782
|
4.9 |
MEDIUM
Network
|
cisco
|
ios_xe
|
A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker with administrative privileges to read arbitrary files on the underlyin…
|
CWE-59
Link Following
|
CVE-2020-3223
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198783
|
4.3 |
MEDIUM
Adjacent
|
cisco
|
ios_xe
|
A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to bypass access control restrictions on an affected device. The vu…
|
NVD-CWE-Other
|
CVE-2020-3222
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198784
|
8.6 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the Flexible NetFlow Version 9 packet processor of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, remote attacker to caus…
|
CWE-20
Improper Input Validation
|
CVE-2020-3221
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198785
|
6.8 |
MEDIUM
Network
|
cisco
|
ios_xe
|
A vulnerability in the hardware crypto driver of Cisco IOS XE Software for Cisco 4300 Series Integrated Services Routers and Cisco Catalyst 9800-L Wireless Controllers could allow an unauthenticated,…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2020-3220
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198786
|
8.8 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to inject and execute arbitrary commands with administrative privileges on the underlying operatin…
|
CWE-20
Improper Input Validation
|
CVE-2020-3219
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198787
|
7.2 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker with administrative privileges to execute arbitrary code with root privileges on the underlying Li…
|
CWE-20
Improper Input Validation
|
CVE-2020-3218
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198788
|
8.8 |
HIGH
Adjacent
|
cisco
|
ios ios_xe ios_xr nx-os
|
A vulnerability in the Topology Discovery Service of Cisco One Platform Kit (onePK) in Cisco IOS Software, Cisco IOS XE Software, Cisco IOS XR Software, and Cisco NX-OS Software could allow an unauth…
|
CWE-20
Improper Input Validation
|
CVE-2020-3217
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198789
|
6.8 |
MEDIUM
Physics
|
cisco
|
ios_xe_sd-wan
|
A vulnerability in Cisco IOS XE SD-WAN Software could allow an unauthenticated, physical attacker to bypass authentication and gain unrestricted access to the root shell of an affected device. The vu…
|
CWE-287
Improper Authentication
|
CVE-2020-3216
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198790
|
6.7 |
MEDIUM
Local
|
cisco
|
ios_xe
|
A vulnerability in the ROMMON of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to those of the root user of the underlying operating system. The vulnerabili…
|
NVD-CWE-noinfo
|
CVE-2020-3213
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|