Catalyst 9800
7 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Catalyst 9800, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
Catalyst 9800 CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 2 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 1 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 7 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- High4
- Medium3
Latest CVEs
The 7 most recently published vulnerabilities affecting Catalyst 9800.
- CVE-2025-20293A vulnerability in the Day One setup process of Cisco IOS XE Software for Catalyst 9800 Series Wireless Controllers for Cloud (9800-CL) could allow an unauthenticated, remote attacker to access the...5.3
- CVE-2025-20140A vulnerability in the Wireless Network Control daemon (wncd) of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, adjacent wireless attacker to cause a deni...7.4
- CVE-2025-20190A vulnerability in the lobby ambassador web interface of Cisco IOS XE Wireless Controller Software could allow an authenticated, remote attacker to remove arbitrary users that are defined on an aff...6.5
- CVE-2024-20271A vulnerability in the IP packet processing of Cisco Access Point (AP) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. ...8.6
- CVE-2022-20945Cisco Catalyst 9100 Series Access Points Association Request Denial of Service Vulnerability7.4
- CVE-2022-20728Cisco Access Points VLAN Bypass from Native VLAN Vulnerability4.7
- CVE-2021-1419Cisco Access Points SSH Management Privilege Escalation Vulnerability7.8
Product grouping is registry-driven, with AI assist and human review. How it works