Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Cisco — Vulnerabilities & Security Advisories 3188

Browse all 3188 CVE security advisories affecting Cisco. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Cisco Systems operates as a global leader in networking hardware, software, and telecommunications services, providing critical infrastructure for enterprise connectivity and cloud security. With over 3,000 recorded CVEs, the company’s attack surface is extensive, reflecting the complexity of its diverse product portfolio. Historically, vulnerabilities frequently involve remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from legacy protocols or complex configuration interfaces. Notable incidents include the 2023 supply chain compromise affecting the Cisco AnyConnect Secure Mobility Client, which allowed attackers to bypass authentication mechanisms. These breaches highlight risks associated with widely deployed endpoint security agents. The sheer volume of disclosed issues underscores the challenges inherent in maintaining security across such a vast ecosystem of interconnected devices and software solutions, requiring rigorous patch management and continuous monitoring to mitigate potential exploitation by threat actors targeting critical network infrastructure.

CVE IDTitleCVSSSeverityPublished
CVE-2019-1937 Cisco Integrated Management Controller Supervisor, Cisco UCS Director, and Cisco UCS Director Express for Big Data Authentication Bypass Vulnerability — Cisco Unified Computing System DirectorCWE-287 9.8 -2019-08-21
CVE-2019-1883 Cisco Integrated Management Controller CLI Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE)CWE-78 7.8 -2019-08-21
CVE-2019-1885 Cisco Integrated Management Controller Command Injection Vulnerability — Cisco Unified Computing System (Management Software)CWE-78 7.2 -2019-08-21
CVE-2019-1896 Cisco Integrated Management Controller CSR Generation Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE)CWE-78 7.2 -2019-08-21
CVE-2019-1900 Cisco Integrated Management Controller Unauthenticated Denial of Service Vulnerability — Cisco Unified Computing System (Management Software)CWE-476 7.5 -2019-08-21
CVE-2019-1863 Cisco Integrated Management Controller Privilege Escalation Vulnerability — Cisco Unified Computing System E-Series Software (UCSE)CWE-285 8.1 -2019-08-21
CVE-2019-1864 Cisco Integrated Management Controller Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE)CWE-78 8.8 -2019-08-21
CVE-2019-1865 Cisco Integrated Management Controller Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE)CWE-78 8.8 -2019-08-21
CVE-2019-1871 Cisco Integrated Management Controller Buffer Overflow Vulnerability — Cisco Unified Computing System (Management Software)CWE-119 8.8 -2019-08-21
CVE-2019-1634 Cisco Integrated Management Controller Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE)CWE-78 7.2 -2019-08-21
CVE-2019-1839 Cisco Remote PHY Device Software Command Injection Vulnerability — Cisco Remote PHYCWE-20 6.7 -2019-08-21
CVE-2019-1850 Cisco Integrated Management Controller Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE)CWE-78 7.2 -2019-08-21
CVE-2019-12624 Cisco IOS XE NGWC Legacy Wireless Device Manager GUI Cross-Site Request Forgery Vulnerability — Cisco IOS XE SoftwareCWE-352 8.8 -2019-08-21
CVE-2019-12626 Cisco Unified Contact Center Express Stored Cross-Site Scripting Vulnerability — Cisco Unified Contact Center ExpressCWE-20 5.4 -2019-08-21
CVE-2019-12627 Cisco Firepower Threat Defense Software Information Disclosure Vulnerability — Cisco Firepower Threat Defense SoftwareCWE-284 7.5 -2019-08-21
CVE-2019-12634 Cisco Integrated Management Controller Supervisor, Cisco UCS Director, and Cisco UCS Director Express for Big Data Denial of Service Vulnerability — Cisco Unified Computing System DirectorCWE-264 7.5 -2019-08-21
CVE-2019-12621 Cisco HyperFlex Static SSL Key Vulnerability — Cisco HyperFlex HX-SeriesCWE-320 7.4 -2019-08-21
CVE-2019-12622 Cisco RoomOS Software Privilege Escalation Vulnerability — Cisco TelePresence CE SoftwareCWE-275 7.1 -2019-08-21
CVE-2019-12623 Cisco Enterprise Network Functions Virtualization Infrastructure Software File Enumeration Vulnerability — Cisco Enterprise NFV Infrastructure SoftwareCWE-538 4.3 -2019-08-21
CVE-2019-1973 Cisco Enterprise NFV Infrastructure Software Cross-site Scripting Vulnerability — Cisco Enterprise NFV Infrastructure SoftwareCWE-79 5.4 -2019-08-08
CVE-2019-1959 Cisco Enterprise NFV Infrastructure Software Arbitrary File Read Vulnerabilities — Cisco Enterprise NFV Infrastructure SoftwareCWE-20 4.4 -2019-08-08
CVE-2019-1960 Cisco Enterprise NFV Infrastructure Software Arbitrary File Read Vulnerabilities — Cisco Enterprise NFV Infrastructure SoftwareCWE-20 4.4 -2019-08-08
CVE-2019-1961 Cisco Enterprise NFV Infrastructure Software Web Portal Arbitrary File Read Vulnerability — Cisco Enterprise NFV Infrastructure SoftwareCWE-532 4.9 -2019-08-08
CVE-2019-1970 Cisco Firepower Threat Defense Software File Policy Bypass Vulnerability — Cisco Firepower Threat Defense SoftwareCWE-693 7.5 -2019-08-08
CVE-2019-1971 Cisco Enterprise NFV Infrastructure Software Command Injection Vulnerability — Cisco Enterprise NFV Infrastructure SoftwareCWE-78 9.8 -2019-08-08
CVE-2019-1972 Cisco Enterprise NFV Infrastructure Software Privilege Escalation Vulnerability — Cisco Enterprise NFV Infrastructure SoftwareCWE-264 6.7 -2019-08-08
CVE-2019-1953 Cisco Enterprise NFV Infrastructure Software Password Recovery Vulnerability — Cisco Enterprise NFV Infrastructure SoftwareCWE-532 6.5 -2019-08-08
CVE-2019-1954 Cisco Webex Meetings Server Open Redirection Vulnerability — Cisco WebEx Meetings ServerCWE-601 6.1 -2019-08-08
CVE-2019-1955 Cisco Email Security Appliance Header Injection Vulnerability — Cisco Email Security Appliance (ESA)CWE-20 7.5 -2019-08-08
CVE-2019-1956 Cisco SPA112 2-Port Phone Adapter Stored Cross-Site Scripting Vulnerability — Cisco SPA112 2-Port Phone AdapterCWE-79 5.4 -2019-08-08

This page lists every published CVE security advisory associated with Cisco. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.