Home/Product/cisco sd wan vmanage
Product

cisco sd wan vmanage

42 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-20262
< 20.3.7
A vulnerability in the SSH service of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to cause a pro
5.3MEDIUM
CVE-2023-20253
< 20.6.2
A vulnerability in the command line interface (cli) management interface of Cisco SD-WAN vManage could allow an authenticated, loc
7.1HIGH
CVE-2023-20179
< 20.6.6
A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow
4.3MEDIUM
CVE-2023-20214
>= 20.10 and < 20.10.1.2
A vulnerability in the request authentication validation for the REST API of Cisco SD-WAN vManage software could allow an unauthen
9.1CRITICAL
CVE-2023-20098
< 20.9.1
A vulnerability in the CLI of Cisco SDWAN vManage Software could allow an authenticated, local attacker to delete arbitrary files.
4.4MEDIUM
CVE-2022-20830
>= 18.4 and < 20.3.4.1
A vulnerability in authentication mechanism of Cisco Software-Defined Application Visibility and Control (SD-AVC) on Cisco vManage
5.3MEDIUM
CVE-2022-20930
< 20.6.2
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to overwrite and possibly corrupt
6.7MEDIUM
CVE-2022-20850
< 18.4.5
A vulnerability in the CLI of stand-alone Cisco IOS XE SD-WAN Software and Cisco SD-WAN Software could allow an authenticated, loc
5.5MEDIUM
CVE-2022-20818
< 20.9
Multiple vulnerabilities in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privile
7.8HIGH
CVE-2022-20696
< 20.6.4
A vulnerability in the binding configuration of Cisco SD-WAN vManage Software containers could allow an unauthenticated, adjacent
7.5HIGH
CVE-2022-20747
< 20.6.1
A vulnerability in the History API of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain access t
6.5MEDIUM
CVE-2022-20739
< 20.6.1
A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to execute arbitrary comm
7.3HIGH
CVE-2022-20735
< 20.6.1
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote atta
6.5MEDIUM
CVE-2021-44228
< 20.3.4.1
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration
10.0CRITICAL
CVE-2021-34712
>= 20.3 and < 20.3.4
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attack
5.4MEDIUM
CVE-2021-1546
>= 20.5 and < 20.5.2
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information.
5.5MEDIUM
CVE-2021-34700
< 20.4.2
A vulnerability in the CLI interface of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to read arbitra
5.5MEDIUM
CVE-2021-1535
< 20.5.1
A vulnerability in the cluster management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote attack
5.3MEDIUM
CVE-2021-1515
< 20.4.1
A vulnerability in Cisco SD-WAN vManage Software could allow an unauthenticated, adjacent attacker to gain access to sensitive inf
4.3MEDIUM
CVE-2021-1514
< 18.3
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to inject arbitrary commands to b
7.8HIGH
CVE-2021-1512
< 18.4.6
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in t
6.0MEDIUM
CVE-2021-1508
< 19.2.99
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary cod
9.8CRITICAL
CVE-2021-1507
< 20.5.1
A vulnerability in an API of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct a stored cross
6.4MEDIUM
CVE-2021-1506
< 20.3.3
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary cod
9.8CRITICAL
CVE-2021-1505
< 20.3.3
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary cod
9.8CRITICAL
CVE-2021-1486
< 20.3.3
A vulnerability in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to enumerate user accounts. This
5.3MEDIUM
CVE-2021-1468
< 20.3.3
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary cod
9.8CRITICAL
CVE-2021-1284
< 20.3.1
A vulnerability in the web-based messaging service interface of Cisco SD-WAN vManage Software could allow an unauthenticated, adja
8.8HIGH
CVE-2021-1275
< 20.3.3
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary cod
9.8CRITICAL
CVE-2021-1480
< 19.2.4
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary cod
7.8HIGH
CVE-2021-1479
< 19.2.4
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary cod
7.8HIGH
CVE-2021-1137
< 19.2.4
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary cod
7.8HIGH
CVE-2021-1235
< 19.2.3
A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to read sensitive databas
5.5MEDIUM
CVE-2021-1225
< 19.2.3
Multiple vulnerabilities in the web-based management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, re
9.1CRITICAL
CVE-2021-1349
< 20.3.2
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attack
6.5MEDIUM
CVE-2021-1259
< 18.2.0
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attack
6.5MEDIUM
CVE-2020-3592
<= 20.1.12
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attack
6.5MEDIUM
CVE-2020-3591
<= 20.1.12
A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could allow an authenticated, remote at
4.3MEDIUM
CVE-2020-3590
<= 20.1.12
A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could allow an authenticated, remote at
6.4MEDIUM
CVE-2020-3587
<= 20.1.12
A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could allow an authenticated, remote at
6.4MEDIUM
CVE-2020-3579
<= 20.1.12
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote atta
6.1MEDIUM
CVE-2020-27129
< 20.3.1
A vulnerability in the remote management feature of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to
6.7MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin