Known vulnerabilities in Cisco Nexus Dashboard Insights (NDI)
Vendor:
Cisco Systems, Inc
Software:
Cisco Nexus Dashboard Insights (NDI)
Software CPE:
cpe:2.3:a:cisco_systems:cisco_nexus_dashboard_insights_ndi:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
7.2
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU124799 - Cross-Site Request Forgery (CSRF) CVE-2026-20041 |
CWE-352 | Medium | 4.1.0.138, 4.2.0.117, 6.7.0.185 | 01.04.2026 |
SB2026040176 |
||
| #VU124798 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2026-20174 |
CWE-22 | Low | 4.2.0.88, 6.8.0.120150002 | 01.04.2026 |
SB2026040175 |
||
| #VU98018 - Exposure of sensitive information to an unauthorized actor CVE-2024-20491 |
CWE-200 | Low | 6.5.1.32 | 03.10.2024 |
SB2024100333 |
||
| #VU88122 - Cross-Site Request Forgery (CSRF) CVE-2024-20281 |
CWE-352 | Low | 6.4.1 | 04.04.2024 |
SB2024040416 |