Browse all 3188 CVE security advisories affecting Cisco. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Cisco Systems operates as a global leader in networking hardware, software, and telecommunications services, providing critical infrastructure for enterprise connectivity and cloud security. With over 3,000 recorded CVEs, the company’s attack surface is extensive, reflecting the complexity of its diverse product portfolio. Historically, vulnerabilities frequently involve remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from legacy protocols or complex configuration interfaces. Notable incidents include the 2023 supply chain compromise affecting the Cisco AnyConnect Secure Mobility Client, which allowed attackers to bypass authentication mechanisms. These breaches highlight risks associated with widely deployed endpoint security agents. The sheer volume of disclosed issues underscores the challenges inherent in maintaining security across such a vast ecosystem of interconnected devices and software solutions, requiring rigorous patch management and continuous monitoring to mitigate potential exploitation by threat actors targeting critical network infrastructure.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2023-20019 | Cisco BroadWorks Application 跨站脚本漏洞 — Cisco BroadWorksCWE-79 | 6.1 | Medium | 2023-01-19 |
| CVE-2023-20040 | Cisco Network Services Orchestrator 代码问题漏洞 — Cisco Network Services OrchestratorCWE-23 | 5.5 | Medium | 2023-01-19 |
| CVE-2023-20044 | Cisco CX Cloud Agent 安全漏洞 — Cisco CX Cloud AgentCWE-708 | 6.7 | Medium | 2023-01-19 |
| CVE-2023-20043 | Cisco CX Cloud Agent 安全漏洞 — Cisco CX Cloud AgentCWE-708 | 6.7 | Medium | 2023-01-19 |
| CVE-2023-20047 | Cisco Webex 安全漏洞 — Cisco Webex Room PhoneCWE-400 | 6.5 | Medium | 2023-01-19 |
| CVE-2023-20018 | Cisco IP Phone 安全漏洞 — Cisco Session Initiation Protocol (SIP) SoftwareCWE-288 | 8.6 | High | 2023-01-19 |
| CVE-2023-20020 | Cisco BroadWorks Application 输入验证错误漏洞 — Cisco BroadWorksCWE-835 | 8.6 | High | 2023-01-19 |
| CVE-2023-20038 | Cisco Industrial Network Director 信任管理问题漏洞 — Cisco Industrial Network DirectorCWE-321 | 8.8 | High | 2023-01-19 |
| CVE-2023-20037 | Cisco Industrial Network Director 跨站脚本漏洞 — Cisco Industrial Network DirectorCWE-79 | 5.4 | Medium | 2023-01-19 |
| CVE-2023-20025 | Cisco Small Business RV016 输入验证错误漏洞 — Cisco Small Business RV Series Router FirmwareCWE-293 | 9.0 | Critical | 2023-01-19 |
| CVE-2023-20026 | Cisco Small Business RV016 输入验证错误漏洞 — Cisco Small Business RV Series Router FirmwareCWE-77 | 6.5 | Medium | 2023-01-19 |
| CVE-2023-20057 | Cisco Email Security Appliance 注入漏洞 — Cisco Email Security Appliance (ESA)CWE-792 | - | - | 2023-01-19 |
| CVE-2023-20010 | Cisco Unified Communications Manager SQL注入漏洞 — Cisco Unified Communications ManagerCWE-89 | 8.1 | High | 2023-01-19 |
| CVE-2022-20967 | Cisco Identity Services Engine 跨站脚本漏洞 — Cisco Identity Services Engine SoftwareCWE-79 | 4.8 | Medium | 2023-01-18 |
| CVE-2022-20964 | Cisco Identity Services Engine 操作系统命令注入漏洞 — Cisco Identity Services Engine SoftwareCWE-78 | 6.3 | Medium | 2023-01-18 |
| CVE-2022-20966 | Cisco Identity Services Engine 跨站脚本漏洞 — Cisco Identity Services Engine SoftwareCWE-79 | 5.4 | Medium | 2023-01-18 |
| CVE-2022-20965 | Cisco Identity Services Engine 安全漏洞 — Cisco Identity Services Engine SoftwareCWE-648 | 4.3 | Medium | 2023-01-18 |
| CVE-2022-20968 | Cisco IP Phone 缓冲区错误漏洞 — Cisco Session Initiation Protocol (SIP) SoftwareCWE-787 | 8.1 | High | 2022-12-08 |
| CVE-2022-20691 | Cisco ATA 190 资源管理错误漏洞 — Cisco Analog Telephone Adaptor (ATA) SoftwareCWE-400 | 5.3 | Medium | 2022-12-07 |
| CVE-2022-20690 | Cisco ATA 190 输入验证错误漏洞 — Cisco Analog Telephone Adaptor (ATA) SoftwareCWE-130 | 5.3 | Medium | 2022-12-07 |
| CVE-2022-20689 | Cisco ATA 190 输入验证错误漏洞 — Cisco Analog Telephone Adaptor (ATA) SoftwareCWE-130 | 5.3 | Medium | 2022-12-07 |
| CVE-2022-20688 | Cisco ATA 190 输入验证错误漏洞 — Cisco Analog Telephone Adaptor (ATA) SoftwareCWE-125 | 5.3 | Medium | 2022-12-07 |
| CVE-2022-20687 | Cisco ATA 190 输入验证错误漏洞 — Cisco Analog Telephone Adaptor (ATA) SoftwareCWE-120 | 5.3 | Medium | 2022-12-07 |
| CVE-2022-20686 | Cisco ATA 190 代码注入漏洞 — Cisco Analog Telephone Adaptor (ATA) SoftwareCWE-130 | 5.3 | Medium | 2022-12-07 |
| CVE-2022-20938 | Cisco Firepower Management Center 代码问题漏洞 — Cisco Firepower Management CenterCWE-611 | 4.3 | Medium | 2022-11-10 |
| CVE-2022-20936 | Cisco Firepower Management Center 跨站脚本漏洞 — Cisco Firepower Management CenterCWE-79 | 4.8 | Medium | 2022-11-10 |
| CVE-2022-20935 | Cisco Firepower Management Center 跨站脚本漏洞 — Cisco Firepower Management CenterCWE-79 | 4.8 | Medium | 2022-11-10 |
| CVE-2022-20932 | Cisco Firepower Management Center 跨站脚本漏洞 — Cisco Firepower Management CenterCWE-79 | 4.8 | Medium | 2022-11-10 |
| CVE-2022-20905 | Cisco Firepower Management Center 跨站脚本漏洞 — Cisco Firepower Management CenterCWE-79 | 4.8 | Medium | 2022-11-10 |
| CVE-2022-20872 | Cisco Firepower Management Center 跨站脚本漏洞 — Cisco Firepower Management CenterCWE-79 | 4.8 | Medium | 2022-11-10 |
This page lists every published CVE security advisory associated with Cisco. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.