Advisories
Cisco PSIRTPoC exploitHIGH2022-07-06
Cisco Expressway Series and Cisco TelePresence Video Communication Server Vulnerabilities
CVEs:CVE-2022-20813CVE-2022-20812
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-209614 |
affected |
Cisco |
— |
— |
Cisco PSIRTPoC exploitHIGH2022-07-06
Cisco Unified Communications Products Arbitrary File Read Vulnerability
CVEs:CVE-2022-20791
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-189784 |
affected |
Cisco |
— |
— |
| CVRFPID-277610 |
affected |
Cisco |
— |
— |
| CVRFPID-88444 |
affected |
Cisco |
— |
— |
Cisco PSIRTPoC exploitHIGH2022-07-06
Cisco Unified Communications Products Timing Attack Vulnerability
CVEs:CVE-2022-20752
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-277610 |
affected |
Cisco |
— |
— |
| CVRFPID-88444 |
affected |
Cisco |
— |
— |
Cisco PSIRTPoC exploitHIGH2022-07-06
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
CVEs:CVE-2022-20800
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-189784 |
affected |
Cisco |
— |
— |
| CVRFPID-277610 |
affected |
Cisco |
— |
— |
| CVRFPID-73608 |
affected |
Cisco |
— |
— |
| CVRFPID-88444 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%MEDIUM2022-07-20
Cisco Nexus Dashboard Unauthorized Access Vulnerabilities
CVEs:CVE-2022-20857CVE-2022-20858CVE-2022-20861
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-280977 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%HIGH2022-07-06
Cisco Unified Communications Manager Arbitrary File Read Vulnerability
CVEs:CVE-2022-20862
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-88444 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%HIGH2022-07-20
Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution and Denial of Service Vulnerabilities
CVEs:CVE-2022-20873CVE-2022-20874CVE-2022-20875CVE-2022-20876CVE-2022-20881CVE-2022-20877CVE-2022-20878CVE-2022-20879CVE-2022-20880CVE-2022-20882CVE-2022-20883CVE-2022-20884CVE-2022-20885CVE-2022-20886CVE-2022-20887CVE-2022-20888CVE-2022-20889CVE-2022-20890CVE-2022-20891CVE-2022-20892CVE-2022-20893CVE-2022-20894CVE-2022-20895CVE-2022-20896CVE-2022-20897CVE-2022-20898CVE-2022-20899CVE-2022-20900CVE-2022-20901CVE-2022-20902CVE-2022-20903CVE-2022-20904CVE-2022-20910CVE-2022-20911CVE-2022-20912
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-183630 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%HIGH2022-07-06
Cisco Unified Communications Products Access Control Vulnerability
CVEs:CVE-2022-20859
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-189784 |
affected |
Cisco |
— |
— |
| CVRFPID-277610 |
affected |
Cisco |
— |
— |
| CVRFPID-88444 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%HIGH2022-07-20
Cisco Nexus Dashboard Arbitrary File Write Vulnerability
CVEs:CVE-2022-20913
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-280977 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%HIGH2022-07-06
Cisco Smart Software Manager On-Prem Denial of Service Vulnerability
CVEs:CVE-2022-20808
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-274027 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%HIGH2022-07-06
Cisco TelePresence Collaboration Endpoint and RoomOS Software Information Disclosure Vulnerability
CVEs:CVE-2022-20768
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-265966 |
affected |
Cisco |
— |
— |
| CVRFPID-278404 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%HIGH2022-07-06
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
CVEs:CVE-2022-20815
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-189784 |
affected |
Cisco |
— |
— |
| CVRFPID-88444 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%HIGH2022-07-20
Cisco IoT Control Center Cross-Site Scripting Vulnerability
CVEs:CVE-2022-20916
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-287188 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%HIGH2022-07-20
Cisco Nexus Dashboard SSL Certificate Validation Vulnerability
CVEs:CVE-2022-20860
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-280977 |
affected |
Cisco |
— |
— |
Cisco PSIRTCoalition ESS < 30%HIGH2022-07-20
Cisco Nexus Dashboard Privilege Escalation Vulnerabilities
CVEs:CVE-2022-20906CVE-2022-20907CVE-2022-20908CVE-2022-20909
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| CVRFPID-280977 |
affected |
Cisco |
— |
— |
Cisco PSIRTAll remainingHIGH2022-07-20
Cisco Identity Services Engine Administrator Password Lifetime Expiration Issue