Vulnerabilities > Cisco

DATE CVE VULNERABILITY TITLE RISK
2022-02-17 CVE-2022-20750 Improper Input Validation vulnerability in Cisco Redundancy Configuration Manager
A vulnerability in the checkpoint manager implementation of Cisco Redundancy Configuration Manager (RCM) for Cisco StarOS Software could allow an unauthenticated, remote attacker to cause the checkpoint manager process to restart upon receipt of malformed TCP data.
network
low complexity
cisco CWE-20
7.5
2022-02-10 CVE-2022-20630 Information Exposure Through Log Files vulnerability in Cisco DNA Center
A vulnerability in the audit log of Cisco DNA Center could allow an authenticated, local attacker to view sensitive information in clear text.
local
low complexity
cisco CWE-532
4.4
2022-02-10 CVE-2022-20680 Unspecified vulnerability in Cisco Prime Service Catalog
A vulnerability in the web-based management interface of Cisco Prime Service Catalog could allow an authenticated, remote attacker to access sensitive information on an affected device.
network
low complexity
cisco
6.5
2022-02-10 CVE-2022-20699 Improper Validation of Specified Quantity in Input vulnerability in Cisco products
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory.
network
low complexity
cisco CWE-1284
critical
9.8
2022-02-10 CVE-2022-20700 Out-of-bounds Write vulnerability in Cisco products
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory.
network
low complexity
cisco CWE-787
critical
9.8
2022-02-10 CVE-2022-20701 Out-of-bounds Write vulnerability in Cisco products
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory.
local
low complexity
cisco CWE-787
7.8
2022-02-10 CVE-2022-20702 Out-of-bounds Write vulnerability in Cisco products
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory.
network
low complexity
cisco CWE-787
7.2
2022-02-10 CVE-2022-20703 Improper Certificate Validation vulnerability in Cisco products
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory.
low complexity
cisco CWE-295
8.0
2022-02-10 CVE-2022-20704 Out-of-bounds Write vulnerability in Cisco products
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory.
network
high complexity
cisco CWE-787
4.8
2022-02-10 CVE-2022-20705 Out-of-bounds Write vulnerability in Cisco products
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory.
network
low complexity
cisco CWE-787
critical
9.8