An XPATH injection flaw in Cisco FMC’s web management interface lets an already-authenticated admin pull sensitive data off the device, but only when lockdown mode is switched on.
Every CISA KEV addition, plus critical-severity flaws in the kit that sits at the edge of a network: firewalls, VPN gateways, load balancers, routers, switches and management consoles.
Colour on the left of each entry is the CVSS severity. A pink CISA KEV badge means the flaw is being exploited right now — treat those first, whatever the score says. How each post is sourced and checked is set out in the methodology.
Cisco Secure Firewall Management Center Software Cross-Site Scripting Vulnerability
An unauthenticated attacker who lures an FMC administrator into clicking crafted content can run script in that admin’s browser session inside the management interface, exposing session data.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Firepower 2100 Series IPv6 over IPsec Denial of Service Vulnerability
An unauthenticated attacker can crash a Firepower 2100 Series firewall by sending IPv6 packets over an established IPsec VPN tunnel, forcing a device reload and cutting off VPN and firewall service.
Cisco Secure Firewall Threat Defense Software Snort 3 Denial of Service Vulnerability
Crafted traffic sent through an FTD device running Snort 3 with an intrusion policy enabled can trap the inspection engine in an infinite loop, forcing a watchdog restart and a temporary inspection outage.
Cisco Secure Firewall Threat Defense Software Geolocation Remote Access VPN Bypass Vulnerability
A URL-parsing flaw in FTD’s new geolocation RA VPN feature lets an unauthenticated attacker craft HTTP traffic that slips past country-based allow/deny rules undetected.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Firepower 3100 and 4200 Series TLS 1.3 Cipher Denial of Service Vulnerability
A specific TLS 1.3 cipher on Firepower 3100/4200 ASA and FTD devices lets an authenticated remote user exhaust connection-handling resources, knocking out all encrypted traffic until the box is rebooted.
Cisco Catalyst Center Unauthenticated API Access Vulnerability
An unauthenticated API endpoint in Cisco Catalyst Center lets remote attackers read or rewrite the outgoing proxy configuration, potentially rerouting or intercepting outbound traffic.
Cisco Webex Meeting Client Join Certificate Validation Vulnerability
A certificate-checking gap in Webex Meetings’ join process let a nearby network attacker hijack another user’s meeting-join attempt; Cisco has already fixed it server-side.
Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities
Authenticated users of Cisco ISE and ISE-PIC can inject stored scripts or bypass permission checks to alter device configuration, with no workaround available until patched.
Cisco Catalyst Center Insufficient Access Control Vulnerability
An access-control gap in Cisco Catalyst Center lets an already-authenticated user reach an internal service’s repository and read or modify its data, but only where Disaster Recovery is switched on.