Vulnerabilities > Cisco > SD WAN Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-01-26 CVE-2019-12619 SQL Injection vulnerability in Cisco Sd-Wan Firmware
A vulnerability in the web interface for Cisco SD-WAN Solution vManage could allow an authenticated, remote attacker to impact the integrity of an affected system by executing arbitrary SQL queries.
network
low complexity
cisco CWE-89
6.5
2019-11-26 CVE-2019-16002 Cross-Site Request Forgery (CSRF) vulnerability in Cisco Sd-Wan Firmware
A vulnerability in the vManage web-based UI (web UI) of the Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system.
network
low complexity
cisco CWE-352
6.5
2019-08-08 CVE-2019-1951 Unspecified vulnerability in Cisco Sd-Wan Firmware
A vulnerability in the packet filtering features of Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to bypass L3 and L4 traffic filters.
network
low complexity
cisco
5.8