|
591
|
6.5 |
MEDIUM
Network
|
-
|
-
|
A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low privileges to retrieve files that they do not have per…
New
|
CWE-388
7PK - Errors
|
CVE-2026-20168
|
2026-05-7 03:59 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
592
|
6.4 |
MEDIUM
Network
|
-
|
-
|
A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low privileges to access files and execute commands on a r…
New
|
CWE-77
Command Injection
|
CVE-2026-20169
|
2026-05-7 03:59 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
593
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability in the Lite Agent feature of Cisco Enterprise Chat and Email (ECE) could allow an authenticated, remote attacker to conduct browser-based attacks. To exploit this vulnerability, the a…
New
|
CWE-646
Reliance on File Name or Extension of Externally-Supplied File
|
CVE-2026-20172
|
2026-05-7 03:59 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
594
|
7.7 |
HIGH
Network
|
-
|
-
|
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco 350 Series Managed Switches (SG350) and Cisco 350X Series Stackable Managed Switches (SG350X) firmware co…
New
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-20185
|
2026-05-7 03:59 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
595
|
5.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability in an identity management API endpoint of Cisco ISE could allow an unauthenticated, remote attacker to enumerate valid user accounts on an affected device.
This vulnerability exist…
New
|
CWE-204
Response Discrepancy Information Exposure
|
CVE-2026-20195
|
2026-05-7 03:59 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
596
|
7.5 |
HIGH
Network
|
-
|
-
|
A vulnerability in the connection-handling mechanism of Cisco Crosswork Network Controller (CNC) and Cisco Network Services Orchestrator (NSO) could allow an unauthenticated, remote attacker to cause…
New
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-20188
|
2026-05-7 03:59 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
597
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability in the log file download functionality of Cisco Prime Infrastructure could allow an authenticated, remote attacker to download arbitrary log files from the server.
This vulner…
New
|
CWE-862
Missing Authorization
|
CVE-2026-20189
|
2026-05-7 03:59 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
598
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability in the RADIUS Policy API endpoints of Cisco ISE could allow an authenticated, remote attacker with read-only Administrator privileges to gain unauthorized access to sensitive inf…
New
|
CWE-862
Missing Authorization
|
CVE-2026-20193
|
2026-05-7 03:59 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
599
|
5.4 |
MEDIUM
Network
|
-
|
-
|
A vulnerability in the REST API of Cisco Slido could have allowed an authenticated, remote attacker to access the social profile data of other users or affect quiz and poll results. Cisco has address…
New
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-20219
|
2026-05-7 03:59 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
600
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ALSA: caiaq: take a reference on the USB device in create_card()
The caiaq driver stores a pointer to the parent USB device in
cd…
Update
|
NVD-CWE-noinfo
|
CVE-2026-31701
|
2026-05-7 03:55 |
2026-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|