cisco-sa-duo-mac-bypass-OyZpVPnx
Cisco Duo Two-Factor Authentication for macOS Authentication Bypass Vulnerability
CVEs:CVE-2023-20199
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-290489 | affected | Cisco | — | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).
Cisco Duo Two-Factor Authentication for macOS Authentication Bypass Vulnerability
CVEs:CVE-2023-20199
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-290489 | affected | Cisco | — | — |
Cisco Secure Email Gateway, Cisco Secure Email and Web Manager, and Cisco Secure Web Appliance Cross-Site Scripting Vulnerabilities
CVEs:CVE-2023-20120CVE-2023-20028CVE-2023-20119
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-189789 | affected | Cisco | — | — |
| CVRFPID-189790 | affected | Cisco | — | — |
| CVRFPID-189791 | affected | Cisco | — | — |
Cisco AnyConnect Secure Mobility Client Software for Windows and Cisco Secure Client Software for Windows Privilege Escalation Vulnerability
CVEs:CVE-2023-20178
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-109810 | affected | Cisco | — | — |
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software for Firepower 2100 Series Appliances SSL/TLS Denial of Service Vulnerability
CVEs:CVE-2023-20006
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-289282:277392 | affected | Cisco | — | — |
| CVRFPID-290563:277392 | affected | Cisco | — | — |
| CVRFPID-290577:277392 | affected | Cisco | — | — |
| CVRFPID-290579:277392 | affected | Cisco | — | — |
| CVRFPID-290670:277392 | affected | Cisco | — | — |
| CVRFPID-292363:277392 | affected | Cisco | — | — |
| CVRFPID-292413:277392 | affected | Cisco | — | — |
| CVRFPID-292442:277392 | affected | Cisco | — | — |
| CVRFPID-292662:277392 | affected | Cisco | — | — |
| CVRFPID-292707:277392 | affected | Cisco | — | — |
| CVRFPID-292878:277392 | affected | Cisco | — | — |
| CVRFPID-294764:277392 | affected | Cisco | — | — |
| CVRFPID-294794:277392 | affected | Cisco | — | — |
| CVRFPID-294796:277392 | affected | Cisco | — | — |
| CVRFPID-294962:277392 | affected | Cisco | — | — |
| CVRFPID-295305:277392 | affected | Cisco | — | — |
| CVRFPID-295329:277392 | affected | Cisco | — | — |
| CVRFPID-295425:277392 | affected | Cisco | — | — |
| CVRFPID-295497:277392 | affected | Cisco | — | — |
| CVRFPID-295500:277392 | affected | Cisco | — | — |
| CVRFPID-295516:277392 | affected | Cisco | — | — |
| CVRFPID-296590:277392 | affected | Cisco | — | — |
| CVRFPID-296621:277392 | affected | Cisco | — | — |
| CVRFPID-300184:277392 | affected | Cisco | — | — |
| CVRFPID-300185:277392 | affected | Cisco | — | — |
| CVRFPID-300239:277392 | affected | Cisco | — | — |
| CVRFPID-300240:277392 | affected | Cisco | — | — |
| CVRFPID-300512:277392 | affected | Cisco | — | — |
| CVRFPID-300739:277392 | affected | Cisco | — | — |
| CVRFPID-301705:277392 | affected | Cisco | — | — |
Cisco Secure Workload Authenticated OpenAPI Privilege Escalation Vulnerability
CVEs:CVE-2023-20136
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-284493 | affected | Cisco | — | — |
Cisco Unified Communications Manager Denial of Service Vulnerability
CVEs:CVE-2023-20116
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-277610 | affected | Cisco | — | — |
| CVRFPID-88444 | affected | Cisco | — | — |
Cisco Unified Communications Manager IM & Presence Service Denial of Service Vulnerability
CVEs:CVE-2023-20108
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-189784 | affected | Cisco | — | — |
Cisco Expressway Series and Cisco TelePresence Video Communication Server Privilege Escalation Vulnerabilities
CVEs:CVE-2023-20105CVE-2023-20192
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-209614 | affected | Cisco | — | — |
Cisco Small Business 200, 300, and 500 Series Switches Web-Based Management Stored Cross-Site Scripting Vulnerability
CVEs:CVE-2023-20188
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| CVRFPID-278027 | affected | Cisco | — | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.