cbcvebase.

Cisco Ios Xe Software vulnerabilities

236 known vulnerabilities affecting cisco/cisco_ios_xe_software.

Total CVEs
236
CISA KEV
6
actively exploited
Public exploits
4
Exploited in wild
9
Severity breakdown
CRITICAL10HIGH135MEDIUM91

Vulnerabilities

Page 10 of 12
CVE-2018-0471P4HIGHCVSS 7.4vn/a2018-10-05
CVE-2018-0471 [HIGH] CWE-400 CVE-2018-0471: A vulnerability in the Cisco Discovery Protocol (CDP) module of Cisco IOS XE Software Releases 16.6. A vulnerability in the Cisco Discovery Protocol (CDP) module of Cisco IOS XE Software Releases 16.6.1 and 16.6.2 could allow an unauthenticated, adjacent attacker to cause a memory leak that may lead to a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certain CDP packets. An attacker could exploit this vulnerabili
nvd
CVE-2019-1750P4HIGHCVSS 7.4v3.6.0Ev3.6.1E+40 more2019-03-28
CVE-2019-1750 [HIGH] CWE-20 CVE-2019-1750: A vulnerability in the Easy Virtual Switching System (VSS) of Cisco IOS XE Software on Catalyst 4500 A vulnerability in the Easy Virtual Switching System (VSS) of Cisco IOS XE Software on Catalyst 4500 Series Switches could allow an unauthenticated, adjacent attacker to cause the switches to reload. The vulnerability is due to incomplete error handling when processing Cisco Discovery Protocol (CDP) packets used with the Easy Virtual Switching System. An
nvd
CVE-2019-1749P4HIGHCVSS 7.4v3.13.6aSv3.16.0aS+47 more2019-03-28
CVE-2019-1749 [HIGH] CWE-20 CVE-2019-1749: A vulnerability in the ingress traffic validation of Cisco IOS XE Software for Cisco Aggregation Ser A vulnerability in the ingress traffic validation of Cisco IOS XE Software for Cisco Aggregation Services Router (ASR) 900 Route Switch Processor 3 (RSP3) could allow an unauthenticated, adjacent attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability exists because the software insufficient
nvd
CVE-2020-3396P4HIGHCVSS 7.2vn/a2020-09-24
CVE-2020-3396 [HIGH] CWE-284 CVE-2020-3396: A vulnerability in the file system on the pluggable USB 3.0 Solid State Drive (SSD) for Cisco IOS XE A vulnerability in the file system on the pluggable USB 3.0 Solid State Drive (SSD) for Cisco IOS XE Software could allow an authenticated, physical attacker to remove the USB 3.0 SSD and modify sensitive areas of the file system, including the namespace container protections. The vulnerability occurs because the USB 3.0 SSD control data is not stored o
nvd
CVE-2022-20692P4MEDIUMCVSS 6.5vn/a2022-04-15
CVE-2022-20692 [MEDIUM] CWE-400 CVE-2022-20692: A vulnerability in the NETCONF over SSH feature of Cisco IOS XE Software could allow a low-privilege A vulnerability in the NETCONF over SSH feature of Cisco IOS XE Software could allow a low-privileged, authenticated, remote attacker to cause a denial of service condition (DoS) on an affected device. This vulnerability is due to insufficient resource management. An attacker could exploit this vulnerability by initiating a large number of NETCONF o
nvd
CVE-2019-1742P4MEDIUMCVSS 5.3v3.2.0JAv16.3.1+21 more2019-03-28
CVE-2019-1742 [MEDIUM] CWE-16 CVE-2019-1742: A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attack A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attacker to access sensitive configuration information. The vulnerability is due to improper access control to files within the web UI. An attacker could exploit this vulnerability by sending a malicious request to an affected device. A successful exploit coul
nvd
CVE-2025-20225P4MEDIUMCVSS 5.8v3.3.0SGv3.3.2SG+72 more2025-08-14
CVE-2025-20225 [MEDIUM] CWE-401 CVE-2025-20225: A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Firewall Adaptive Security Appliance (ASA) Software, and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a denial of service (DoS) condition. This v
nvd
CVE-2025-20194P4MEDIUMCVSS 5.4v17.3.1v17.3.2+96 more2025-05-07
CVE-2025-20194 [MEDIUM] CWE-78 CVE-2025-20194: A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authen A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privileged, remote attacker to perform an injection attack against an affected device. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web-based mana
nvd
CVE-2021-1398P4MEDIUMCVSS 6.8vn/a2021-03-24
CVE-2021-1398 [MEDIUM] CWE-489 CVE-2021-1398: A vulnerability in the boot logic of Cisco IOS XE Software could allow an authenticated, local attac A vulnerability in the boot logic of Cisco IOS XE Software could allow an authenticated, local attacker with level 15 privileges or an unauthenticated attacker with physical access to execute arbitrary code on the underlying Linux operating system of an affected device. This vulnerability is due to incorrect validations of specific function arguments
nvd
CVE-2022-20944P4MEDIUMCVSS 6.8vn/a2022-10-10
CVE-2022-20944 [MEDIUM] CWE-347 CVE-2022-20944: A vulnerability in the software image verification functionality of Cisco IOS XE Software for Cisco A vulnerability in the software image verification functionality of Cisco IOS XE Software for Cisco Catalyst 9200 Series Switches could allow an unauthenticated, physical attacker to execute unsigned code at system boot time. This vulnerability is due to an improper check in the code function that manages the verification of the digital signatures of
nvd
CVE-2018-15371P4MEDIUMCVSS 6.7vn/a2018-10-05
CVE-2018-15371 [MEDIUM] CWE-284 CVE-2018-15371: A vulnerability in the shell access request mechanism of Cisco IOS XE Software could allow an authen A vulnerability in the shell access request mechanism of Cisco IOS XE Software could allow an authenticated, local attacker to bypass authentication and gain unrestricted access to the root shell of an affected device. The vulnerability exists because the affected software has insufficient authentication mechanisms for certain commands. An attacker
nvd
CVE-2021-1441P4MEDIUMCVSS 6.7vn/a2021-03-24
CVE-2021-1441 [MEDIUM] CWE-78 CVE-2021-1441: A vulnerability in the hardware initialization routines of Cisco IOS XE Software for Cisco 1100 Seri A vulnerability in the hardware initialization routines of Cisco IOS XE Software for Cisco 1100 Series Industrial Integrated Services Routers and Cisco ESR6300 Embedded Series Routers could allow an authenticated, local attacker to execute unsigned code at system boot time. This vulnerability is due to incorrect validations of parameters passed to a di
nvd
CVE-2021-1281P4MEDIUMCVSS 6.7vn/a2021-03-24
CVE-2021-1281 [MEDIUM] CWE-399 CVE-2021-1281: A vulnerability in CLI management in Cisco IOS XE SD-WAN Software could allow an authenticated, loca A vulnerability in CLI management in Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to access the underlying operating system as the root user. This vulnerability is due to the way the software handles concurrent CLI sessions. An attacker could exploit this vulnerability by authenticating to the device as an administrative u
nvd
CVE-2021-1625P4MEDIUMCVSS 5.8vn/a2021-09-23
CVE-2021-1625 [MEDIUM] CWE-284 CVE-2021-1625: A vulnerability in the Zone-Based Policy Firewall feature of Cisco IOS XE Software could allow an un A vulnerability in the Zone-Based Policy Firewall feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to prevent the Zone-Based Policy Firewall from correctly classifying traffic. This vulnerability exists because ICMP and UDP responder-to-initiator flows are not inspected when the Zone-Based Policy Firewall has either Uni
nvd
CVE-2024-20265P4MEDIUMCVSS 5.9vN/A2024-03-27
CVE-2024-20265 [MEDIUM] CWE-501 CVE-2024-20265: A vulnerability in the boot process of Cisco Access Point (AP) Software could allow an unauthenticat A vulnerability in the boot process of Cisco Access Point (AP) Software could allow an unauthenticated, physical attacker to bypass the Cisco Secure Boot functionality and load a software image that has been tampered with on an affected device. This vulnerability exists because unnecessary commands are available during boot time at the physical cons
nvd
CVE-2025-20293P4MEDIUMCVSS 5.3v16.10.1v16.10.1s+60 more2025-09-24
CVE-2025-20293 [MEDIUM] CWE-459 CVE-2025-20293: A vulnerability in the Day One setup process of Cisco IOS XE Software for Catalyst 9800 Series Wirel A vulnerability in the Day One setup process of Cisco IOS XE Software for Catalyst 9800 Series Wireless Controllers for Cloud (9800-CL) could allow an unauthenticated, remote attacker to access the public-key infrastructure (PKI) server that is running on an affected device. This vulnerability is due to incomplete cleanup upon completion of the Day
nvd
CVE-2021-1453P4MEDIUMCVSS 6.8vn/a2021-03-24
CVE-2021-1453 [MEDIUM] CWE-347 CVE-2021-1453: A vulnerability in the software image verification functionality of Cisco IOS XE Software for the Ci A vulnerability in the software image verification functionality of Cisco IOS XE Software for the Cisco Catalyst 9000 Family of switches could allow an unauthenticated, physical attacker to execute unsigned code at system boot time. The vulnerability is due to an improper check in the code function that manages the verification of the digital signatur
nvd
CVE-2020-3417P4MEDIUMCVSS 6.7vn/a2020-09-24
CVE-2020-3417 [MEDIUM] CWE-78 CVE-2020-3417: A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to execute per A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to execute persistent code at boot time and break the chain of trust. This vulnerability is due to incorrect validations by boot scripts when specific ROM monitor (ROMMON) variables are set. An attacker could exploit this vulnerability by installing code to a specific
nvd
CVE-2019-1760P4MEDIUMCVSS 5.9v3.16.4Sv3.16.4aS+39 more2019-03-28
CVE-2019-1760 [MEDIUM] CWE-20 CVE-2019-1760: A vulnerability in Performance Routing Version 3 (PfRv3) of Cisco IOS XE Software could allow an una A vulnerability in Performance Routing Version 3 (PfRv3) of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the affected device to reload. The vulnerability is due to the processing of malformed smart probe packets. An attacker could exploit this vulnerability by sending specially crafted smart probe packets at the affect
nvd
CVE-2020-3476P4MEDIUMCVSS 6.0vn/a2020-09-24
CVE-2020-3476 [MEDIUM] CWE-552 CVE-2020-3476: A vulnerability in the CLI implementation of a specific command of Cisco IOS XE Software could allow A vulnerability in the CLI implementation of a specific command of Cisco IOS XE Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying host file system. The vulnerability is due to insufficient validation of the parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing t
nvd