Skip to main content

Vendor/product archive

cisco / asyncos CVEs

Beta · best-effort

55 CVEs tagged to cisco / asyncos1 Critical, 15 High, 37 Medium, 1 Low, 1 Unrated.

CVE-2025-20183

Published Feb 5, 2025

A vulnerability in a policy-based Cisco Application Visibility and Control (AVC) implementation of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthentic…

CVSS 5.8 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2022-20871

Published Nov 15, 2024

A vulnerability in the web management interface of Cisco AsyncOS for Cisco Secure Web Appliance, formerly Cisco Web Security Appliance (WSA), could allow an au…

CVSS 6.3 · Medium
evidence mentions
2
Buzz score
17.5

CVE-2024-20435

Published Jul 17, 2024

A vulnerability in the CLI of Cisco AsyncOS for Secure Web Appliance could allow an authenticated, local attacker to execute arbitrary commands and elevate privileges to root.…

CVSS 8.8 · High

CVE-2024-20429

Published Jul 17, 2024

A vulnerability in the web-based management interface of Cisco AsyncOS for Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrary system commands…

CVSS 6.5 · Medium

CVE-2024-20392

Published May 15, 2024

A vulnerability in the web-based management API of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to conduct an HTTP respons…

CVSS 6.1 · Medium

CVE-2024-20257

Published May 15, 2024

A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an authenticated, remote attacker to conduct an XSS atta…

CVSS 4.8 · Medium

CVE-2020-26082

Published Aug 4, 2023

A vulnerability in the zip decompression engine of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass conten…

CVSS 5.8 · Medium

CVE-2023-20215

Published Aug 3, 2023

A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthenticated, remote attacker to bypass a configured rule, allow…

CVSS 5.8 · Medium
Showing 1-25 of 55 CVEsPage 1 of 3