Authenticated users of Cisco’s Contact Centre platforms can exploit several bugs to read sensitive data, upload and run files, and escalate to root, with no workaround until patched.
Every CISA KEV addition, plus critical-severity flaws in the kit that sits at the edge of a network: firewalls, VPN gateways, load balancers, routers, switches and management consoles.
Colour on the left of each entry is the CVSS severity. A pink CISA KEV badge means the flaw is being exploited right now — treat those first, whatever the score says. How each post is sourced and checked is set out in the methodology.
Cisco BroadWorks CommPilot Application Software Cross-Site Scripting Vulnerability
An authenticated administrator can inject malicious script into the CommPilot web management interface, letting them run arbitrary code or read browser session data within that admin portal.
Cisco TelePresence Collaboration Endpoint and RoomOS Software Information Disclosure Vulnerability
When SIP media logging is switched on, Cisco RoomOS and TelePresence CE endpoints can write unencrypted credentials and other sensitive data into audit logs an admin can read.
Multiple Cisco Products Snort 3 MIME Denial of Service Vulnerabilities
Flaws in the Snort 3 MIME decoder let a remote attacker with no credentials crash the detection engine or pull sensitive data from traffic passing through Firepower and ISA appliances, with no workaround to fall back on.
Cisco Desk Phone 9800 Series, IP Phone 7800 and 8800 Series, and Video Phone 8875 with SIP Software Vulnerabilities
Unauthenticated attackers can knock Cisco desk and video phones offline or run XSS against the web UI, but only if Web Access is enabled and the phone is registered to Unified Communications Manager.
Cisco Unified Communications Manager Stored Cross-Site Scripting Vulnerability
An authenticated admin on Cisco Unified Communications Manager’s web interface can plant malicious script that runs in other administrators’ browser sessions, exposing call-control data.
Cisco Cyber Vision Center Stored Cross-Site Scripting Vulnerabilities
Two stored XSS flaws in Cisco Cyber Vision Center’s Sensor Explorer and Reports pages let an authenticated user plant scripts that run in other admins’ browsers, with no workaround and a fix-only path.
Cisco IOS XE Software Web Authentication Reflected Cross-Site Scripting Vulnerability
Cisco IOS XE’s web authentication login page fails to sanitise input properly, letting an attacker craft a link that runs script in a victim’s browser session on the device.
Cisco Secure Firewall Adaptive Security Appliance Software and Secure Firewall Threat Defense Software VPN Web Server Remote Code Execution Vulnerability
Anyone holding valid VPN credentials can send crafted HTTP requests to the ASA/FTD VPN web server and gain root code execution, with no workaround to fall back on.
Cisco Secure Firewall Adaptive Security Appliance Software, Secure Firewall Threat Defense Software, IOS Software, IOS XE Software, and IOS XR Software Web Services Remote Code Execution Vulnerability
A flaw in the web services layer of Cisco’s firewall and router platforms lets attackers send crafted HTTP requests to run arbitrary code, with no login needed on ASA and FTD.