Vulnerabilities > Cisco > Umbrella > 003.003.000

DATE CVE VULNERABILITY TITLE RISK
2022-11-04 CVE-2022-20969 Cross-site Scripting vulnerability in Cisco Umbrella 003.003(000)
A vulnerability in multiple management dashboard pages of Cisco Umbrella could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the Cisco Umbrella dashboard. This vulnerability is due to unsanitized user input.
network
low complexity
cisco CWE-79
5.4
2022-04-21 CVE-2022-20773 Use of Hard-coded Credentials vulnerability in Cisco Umbrella
A vulnerability in the key-based SSH authentication mechanism of Cisco Umbrella Virtual Appliance (VA) could allow an unauthenticated, remote attacker to impersonate a VA.
network
high complexity
cisco CWE-798
8.1