Vulnerabilities > Cisco > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-10-06 CVE-2021-34772 Open Redirect vulnerability in Cisco Orbital
A vulnerability in the web-based management interface of Cisco Orbital could allow an unauthenticated, remote attacker to redirect users to a malicious webpage.
network
low complexity
cisco CWE-601
6.1
2021-10-06 CVE-2021-34775 Classic Buffer Overflow vulnerability in Cisco products
Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business 220 Series Smart Switches.
low complexity
cisco CWE-120
4.3
2021-10-06 CVE-2021-34776 Classic Buffer Overflow vulnerability in Cisco products
Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business 220 Series Smart Switches.
low complexity
cisco CWE-120
4.3
2021-10-06 CVE-2021-34777 Classic Buffer Overflow vulnerability in Cisco products
Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business 220 Series Smart Switches.
low complexity
cisco CWE-120
4.3
2021-10-06 CVE-2021-34778 Classic Buffer Overflow vulnerability in Cisco products
Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business 220 Series Smart Switches.
low complexity
cisco CWE-120
4.3
2021-10-06 CVE-2021-34782 Unspecified vulnerability in Cisco DNA Center
A vulnerability in the API endpoints for Cisco DNA Center could allow an authenticated, remote attacker to gain access to sensitive information that should be restricted.
network
low complexity
cisco
4.3
2021-09-23 CVE-2021-1546 Information Exposure Through an Error Message vulnerability in Cisco products
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information.
local
low complexity
cisco CWE-209
5.5
2021-09-23 CVE-2021-1589 Insufficiently Protected Credentials vulnerability in Cisco Sd-Wan
A vulnerability in the disaster recovery feature of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain unauthorized access to user credentials.
network
low complexity
cisco CWE-522
6.5
2021-09-23 CVE-2021-1616 Unspecified vulnerability in Cisco IOS XE
A vulnerability in the H.323 application level gateway (ALG) used by the Network Address Translation (NAT) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass the ALG.
network
low complexity
cisco
4.7
2021-09-23 CVE-2021-1625 Unspecified vulnerability in Cisco IOS XE
A vulnerability in the Zone-Based Policy Firewall feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to prevent the Zone-Based Policy Firewall from correctly classifying traffic.
network
low complexity
cisco
5.8