CVE Feed

    Dashboard / CVE

    9.9
    Critical

    CVE-2023-20048

    Last Modified: 16 Dec 2025

    A vulnerability in the web services interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to execute certain unauthorized configuration commands on a Firepower Threat Defense (FTD) device that is managed by the FMC Software. This vulnerability is due to insufficient authorization of configuration commands that are sent through the web service interface. An attacker could exploit this vulnerability by authenticating to the FMC web services interface and sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to execute certain configuration commands on the targeted FTD device. To successfully exploit this vulnerability, an attacker would need valid credentials on the FMC Software.

    Published: 1 Nov 2023
    4
    Medium

    CVE-2023-20031

    Last Modified: 11 Aug 2026

    A vulnerability in the SSL/TLS certificate handling of Snort 3 Detection Engine integration with Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 detection engine to restart. This vulnerability is due to a logic error that occurs when an SSL/TLS certificate that is under load is accessed when it is initiating an SSL connection. Under specific, time-based constraints, an attacker could exploit this vulnerability by sending a high rate of SSL/TLS connection requests to be inspected by the Snort 3 detection engine on an affected device. A successful exploit could allow the attacker to cause the Snort 3 detection engine to reload, resulting in either a bypass or a denial of service (DoS) condition, depending on device configuration. The Snort detection engine will restart automatically. No manual intervention is required.

    Published: 1 Nov 2023
    5.3
    Medium

    CVE-2023-20255

    Last Modified: 21 Nov 2024

    A vulnerability in an API of the Web Bridge feature of Cisco Meeting Server could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to insufficient validation of HTTP requests. An attacker could exploit this vulnerability by sending crafted HTTP packets to an affected device. A successful exploit could allow the attacker to cause a partial availability condition, which could cause ongoing video calls to be dropped due to the invalid packets reaching the Web Bridge.

    Published: 1 Nov 2023
    4.7
    Medium

    CVE-2023-20196

    Last Modified: 21 Nov 2024

    Two vulnerabilities in Cisco ISE could allow an authenticated, remote attacker to upload arbitrary files to an affected device. To exploit these vulnerabilities, an attacker must have valid Administrator credentials on the affected device. These vulnerabilities are due to improper validation of files that are uploaded to the web-based management interface. An attacker could exploit these vulnerabilities by uploading a crafted file to an affected device. A successful exploit could allow the attacker to store malicious files in specific directories on the device. The attacker could later use those files to conduct additional attacks, including executing arbitrary code on the affected device with root privileges.

    Published: 1 Nov 2023
    4.7
    Medium

    CVE-2023-20195

    Last Modified: 21 Nov 2024

    Two vulnerabilities in Cisco ISE could allow an authenticated, remote attacker to upload arbitrary files to an affected device. To exploit these vulnerabilities, an attacker must have valid Administrator credentials on the affected device. These vulnerabilities are due to improper validation of files that are uploaded to the web-based management interface. An attacker could exploit these vulnerabilities by uploading a crafted file to an affected device. A successful exploit could allow the attacker to store malicious files in specific directories on the device. The attacker could later use those files to conduct additional attacks, including executing arbitrary code on the affected device with root privileges.

    Published: 1 Nov 2023
    4.3
    Medium

    CVE-2023-20213

    Last Modified: 12 Jun 2025

    A vulnerability in the CDP processing feature of Cisco ISE could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition of the CDP process on an affected device. This vulnerability is due to insufficient bounds checking when an affected device processes CDP traffic. An attacker could exploit this vulnerability by sending crafted CDP traffic to the device. A successful exploit could cause the CDP process to crash, impacting neighbor discovery and the ability of Cisco ISE to determine the reachability of remote devices. After a crash, the CDP process must be manually restarted using the cdp enable command in interface configuration mode.

    Published: 1 Nov 2023
    5.8
    Medium

    CVE-2023-20245

    Last Modified: 11 Aug 2026

    Multiple vulnerabilities in the per-user-override feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access control list (ACL) and allow traffic that should be denied to flow through an affected device. These vulnerabilities are due to a logic error that could occur when the affected software constructs and applies per-user-override rules. An attacker could exploit these vulnerabilities by connecting to a network through an affected device that has a vulnerable configuration. A successful exploit could allow the attacker to bypass the interface ACL and access resources that would should be protected.

    Published: 1 Nov 2023
    5
    Medium

    CVE-2023-20256

    Last Modified: 11 Aug 2026

    Multiple vulnerabilities in the per-user-override feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access control list (ACL) and allow traffic that should be denied to flow through an affected device. These vulnerabilities are due to a logic error that could occur when the affected software constructs and applies per-user-override rules. An attacker could exploit these vulnerabilities by connecting to a network through an affected device that has a vulnerable configuration. A successful exploit could allow the attacker to bypass the interface ACL and access resources that would should be protected.

    Published: 1 Nov 2023
    4.8
    Medium

    CVE-2023-20005

    Last Modified: 26 Nov 2024

    Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface of an affected device. These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit these vulnerabilities by inserting crafted input into various data fields in an affected interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface, or access sensitive, browser-based information. In some cases, it is also possible to cause a temporary availability impact to portions of the FMC Dashboard.

    Published: 1 Nov 2023
    4.8
    Medium

    CVE-2023-20074

    Last Modified: 26 Nov 2024

    Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface of an affected device. These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit these vulnerabilities by inserting crafted input into various data fields in an affected interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface, or access sensitive, browser-based information. In some cases, it is also possible to cause a temporary availability impact to portions of the FMC Dashboard.

    Published: 1 Nov 2023
    6.1
    Medium

    CVE-2023-20206

    Last Modified: 26 Nov 2024

    Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface of an affected device. These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit these vulnerabilities by inserting crafted input into various data fields in an affected interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface, or access sensitive, browser-based information. In some cases, it is also possible to cause a temporary availability impact to portions of the FMC Dashboard.

    Published: 1 Nov 2023
    4.8
    Medium

    CVE-2023-20041

    Last Modified: 26 Nov 2024

    Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface of an affected device. These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit these vulnerabilities by inserting crafted input into various data fields in an affected interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface, or access sensitive, browser-based information. In some cases, it is also possible to cause a temporary availability impact to portions of the FMC Dashboard.

    Published: 1 Nov 2023
    5.8
    Medium

    CVE-2023-20270

    Last Modified: 11 Aug 2026

    A vulnerability in the interaction between the Server Message Block (SMB) protocol preprocessor and the Snort 3 detection engine for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass the configured policies or cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper error-checking when the Snort 3 detection engine is processing SMB traffic. An attacker could exploit this vulnerability by sending a crafted SMB packet stream through an affected device. A successful exploit could allow the attacker to cause the Snort process to reload, resulting in a DoS condition.

    Published: 1 Nov 2023
    8.6
    High

    CVE-2023-20244

    Last Modified: 11 Aug 2026

    A vulnerability in the internal packet processing of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Firewalls could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of certain packets when they are sent to the inspection engine. An attacker could exploit this vulnerability by sending a series of crafted packets to an affected device. A successful exploit could allow the attacker to deplete all 9,472 byte blocks on the device, resulting in traffic loss across the device or an unexpected reload of the device. If the device does not reload on its own, a manual reload of the device would be required to recover from this state.

    Published: 1 Nov 2023
    7.5
    High

    CVE-2023-20155

    Last Modified: 26 Nov 2024

    A vulnerability in a logging API in Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to cause the device to become unresponsive or trigger an unexpected reload. This vulnerability could also allow an attacker with valid user credentials, but not Administrator privileges, to view a system log file that they would not normally have access to. This vulnerability is due to a lack of rate-limiting of requests that are sent to a specific API that is related to an FMC log. An attacker could exploit this vulnerability by sending a high rate of HTTP requests to the API. A successful exploit could allow the attacker to cause a denial of service (DoS) condition due to the FMC CPU spiking to 100 percent utilization or to the device reloading. CPU utilization would return to normal if the attack traffic was stopped before an unexpected reload was triggered.

    Published: 1 Nov 2023
    6.5
    Medium

    CVE-2023-20114

    Last Modified: 26 Nov 2024

    A vulnerability in the file download feature of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to download arbitrary files from an affected system. This vulnerability is due to a lack of input sanitation. An attacker could exploit this vulnerability by sending a crafted HTTPS request. A successful exploit could allow the attacker to download arbitrary files from the affected system.

    Published: 1 Nov 2023
    8.6
    High

    CVE-2023-20086

    Last Modified: 11 Aug 2026

    A vulnerability in ICMPv6 processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to improper processing of ICMPv6 messages. An attacker could exploit this vulnerability by sending crafted ICMPv6 messages to a targeted Cisco ASA or FTD system with IPv6 enabled. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.

    Published: 1 Nov 2023
    4
    Medium

    CVE-2023-20177

    Last Modified: 11 Aug 2026

    A vulnerability in the SSL file policy implementation of Cisco Firepower Threat Defense (FTD) Software that occurs when the SSL/TLS connection is configured with a URL Category and the Snort 3 detection engine could allow an unauthenticated, remote attacker to cause the Snort 3 detection engine to unexpectedly restart. This vulnerability exists because a logic error occurs when a Snort 3 detection engine inspects an SSL/TLS connection that has either a URL Category configured on the SSL file policy or a URL Category configured on an access control policy with TLS server identity discovery enabled. Under specific, time-based constraints, an attacker could exploit this vulnerability by sending a crafted SSL/TLS connection through an affected device. A successful exploit could allow the attacker to trigger an unexpected reload of the Snort 3 detection engine, resulting in either a bypass or denial of service (DoS) condition, depending on device configuration. The Snort 3 detection engine will restart automatically. No manual intervention is required.

    Published: 1 Nov 2023
    4.5
    Medium

    CVE-2023-33228

    Last Modified: 21 Nov 2024

    The SolarWinds Network Configuration Manager was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to obtain sensitive information.

    Published: 1 Nov 2023
    8
    High

    CVE-2023-33227

    Last Modified: 21 Nov 2024

    The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability This vulnerability allows a low level user to perform the actions with SYSTEM privileges.

    Published: 1 Nov 2023
    8
    High

    CVE-2023-33226

    Last Modified: 21 Nov 2024

    The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-level user to perform the actions with SYSTEM privileges.

    Published: 1 Nov 2023
    6.7
    Medium

    CVE-2023-5847

    Last Modified: 21 Nov 2024

    Under certain conditions, a low privileged attacker could load a specially crafted file during installation or upgrade to escalate privileges on Windows and Linux hosts.

    Published: 1 Nov 2023
    8.8
    High

    CVE-2023-40061

    Last Modified: 21 Nov 2024

     Insecure job execution mechanism vulnerability. This vulnerability can lead to other attacks as a result.

    Published: 1 Nov 2023
    8
    High

    CVE-2023-40062

    Last Modified: 21 Nov 2024

    SolarWinds Platform Incomplete List of Disallowed Inputs Remote Code Execution Vulnerability. If executed, this vulnerability would allow a low-privileged user to execute commands with SYSTEM privileges.

    Published: 1 Nov 2023
    7.5
    High

    CVE-2023-5627

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in NPort 6000 Series, making the authentication mechanism vulnerable. This vulnerability arises from the incorrect implementation of sensitive information protection, potentially allowing malicious users to gain unauthorized access to the web service.

    Published: 1 Nov 2023
    6.5
    Medium

    CVE-2023-4452

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in the EDR-810, EDR-G902, and EDR-G903 Series, making them vulnerable to the denial-of-service vulnerability. This vulnerability stems from insufficient input validation in the URI, potentially enabling malicious users to trigger the device reboot.

    Published: 1 Nov 2023
    7.8
    High

    CVE-2023-3972

    Last Modified: 6 Apr 2026

    A vulnerability was found in insights-client. This security issue occurs because of insecure file operations or unsafe handling of temporary files and directories that lead to local privilege escalation. Before the insights-client has been registered on the system by root, an unprivileged local user or attacker could create the /var/tmp/insights-client directory (owning the directory with read, write, and execute permissions) on the system. After the insights-client is registered by root, an attacker could then control the directory content that insights are using by putting malicious scripts into it and executing arbitrary code as root (trivially bypassing SELinux protections because insights processes are allowed to disable SELinux system-wide).

    Published: 1 Nov 2023
    6.7
    Medium

    CVE-2023-42655

    Last Modified: 21 Nov 2024

    In sim service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42654

    Last Modified: 21 Nov 2024

    In dm service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    4.4
    Medium

    CVE-2022-48461

    Last Modified: 21 Nov 2024

    In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2022-48460

    Last Modified: 21 Nov 2024

    In setting service, there is a possible undefined behavior due to incorrect error handling. This could lead to local denial of service with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2022-48459

    Last Modified: 21 Nov 2024

    In TeleService, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2022-48458

    Last Modified: 21 Nov 2024

    In TeleService, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2022-48457

    Last Modified: 21 Nov 2024

    In TeleService, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional execution privileges needed

    Published: 1 Nov 2023
    4.4
    Medium

    CVE-2022-48456

    Last Modified: 21 Nov 2024

    In camera driver, there is a possible out of bounds write due to a incorrect bounds check. This could lead to local denial of service with System execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2022-48455

    Last Modified: 21 Nov 2024

    In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2022-48454

    Last Modified: 21 Nov 2024

    In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed

    Published: 1 Nov 2023
    4.4
    Medium

    CVE-2023-42750

    Last Modified: 21 Nov 2024

    In gnss service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42653

    Last Modified: 21 Nov 2024

    In faceid service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42652

    Last Modified: 21 Nov 2024

    In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42651

    Last Modified: 21 Nov 2024

    In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42650

    Last Modified: 21 Nov 2024

    In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42649

    Last Modified: 21 Nov 2024

    In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42648

    Last Modified: 21 Nov 2024

    In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42647

    Last Modified: 21 Nov 2024

    In Ifaa service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42646

    Last Modified: 21 Nov 2024

    In Ifaa service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42645

    Last Modified: 21 Nov 2024

    In sim service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42644

    Last Modified: 21 Nov 2024

    In dm service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42643

    Last Modified: 21 Nov 2024

    In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023
    5.5
    Medium

    CVE-2023-42642

    Last Modified: 21 Nov 2024

    In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

    Published: 1 Nov 2023