Vulnerabilities > Cisco > Secure Network Analytics

DATE CVE VULNERABILITY TITLE RISK
2023-04-05 CVE-2023-20102 Deserialization of Untrusted Data vulnerability in Cisco products
A vulnerability in the web-based management interface of Cisco Secure Network Analytics could allow an authenticated, remote attacker to execute arbitrary code on the underlying operating system.
network
low complexity
cisco CWE-502
8.8
2023-04-05 CVE-2023-20103 Improper Input Validation vulnerability in Cisco Secure Network Analytics 2.1.1/7.4.1
A vulnerability in Cisco Secure Network Analytics could allow an authenticated, remote attacker to execute arbitrary code as a root user on an affected device.
network
low complexity
cisco CWE-20
7.2
2022-05-27 CVE-2022-20797 OS Command Injection vulnerability in Cisco Secure Network Analytics 2.1.1/7.4.1
A vulnerability in the web-based management interface of Cisco Secure Network Analytics, formerly Cisco Stealthwatch Enterprise, could allow an authenticated, remote attacker to execute arbitrary commands as an administrator on the underlying operating system.
network
low complexity
cisco CWE-78
critical
9.1
2022-04-06 CVE-2022-20741 Cross-site Scripting vulnerability in Cisco Secure Network Analytics
A vulnerability in the web-based management interface of the Network Diagrams application for Cisco Secure Network Analytics, formerly Stealthwatch Enterprise, could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface.
network
low complexity
cisco CWE-79
5.4