Cisco Ios Xe Software vulnerabilities
236 known vulnerabilities affecting cisco/cisco_ios_xe_software.
Total CVEs
236
CISA KEV
6
actively exploited
Public exploits
4
Exploited in wild
9
Severity breakdown
CRITICAL10HIGH135MEDIUM91
Vulnerabilities
Page 2 of 12
CVE-2019-1754P3HIGHCVSS 8.8v3.2.0JAv16.7.1+14 more2019-03-28
CVE-2019-1754 [HIGH] CWE-20 CVE-2019-1754: A vulnerability in the authorization subsystem of Cisco IOS XE Software could allow an authenticated
A vulnerability in the authorization subsystem of Cisco IOS XE Software could allow an authenticated but unprivileged (level 1), remote attacker to run privileged Cisco IOS commands by using the web UI. The vulnerability is due to improper validation of user privileges of web UI users. An attacker could exploit this vulnerability by submitting a maliciou
nvd
CVE-2024-20510P3CRITICALCVSS 9.3v16.3.1v16.3.2+195 more2024-09-25
CVE-2024-20510 [CRITICAL] CWE-863 CVE-2024-20510: A vulnerability in the Central Web Authentication (CWA) feature of Cisco IOS XE Software for Wireles
A vulnerability in the Central Web Authentication (CWA) feature of Cisco IOS XE Software for Wireless Controllers could allow an unauthenticated, adjacent attacker to bypass the pre-authentication access control list (ACL), which could allow access to network resources before user authentication.
This vulnerability is due to a logic error when act
nvd
CVE-2023-20231P2HIGHCVSS 8.8v16.12.8v16.12.4+65 more2023-09-27
CVE-2023-20231 [HIGH] CWE-78 CVE-2023-20231: A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to perform an injection attack against an affected device.
This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web UI. A successful exploit could allow the attacker to
nvd
CVE-2023-20235P3HIGHCVSS 8.8v17.3.1v17.3.2+64 more2023-10-04
CVE-2023-20235 [HIGH] CWE-552 CVE-2023-20235: A vulnerability in the on-device application development workflow feature for the Cisco IOx applicat
A vulnerability in the on-device application development workflow feature for the Cisco IOx application hosting infrastructure in Cisco IOS XE Software could allow an authenticated, remote attacker to access the underlying operating system as the root user.
This vulnerability exists because Docker containers with the privileged runtime option are not
nvd
CVE-2025-20160P3HIGHCVSS 8.1v3.16.8Sv3.16.9S+233 more2025-09-24
CVE-2025-20160 [HIGH] CWE-287 CVE-2025-20160: A vulnerability in the implementation of the TACACS+ protocol in Cisco IOS Software and Cisco IOS XE
A vulnerability in the implementation of the TACACS+ protocol in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to view sensitive data or bypass authentication.
This vulnerability exists because the system does not properly check whether the required TACACS+ shared secret is configured. A machine-in-the-mi
nvd
CVE-2019-1743P3HIGHCVSS 8.8v16.2.1v16.2.2+29 more2019-03-28
CVE-2019-1743 [HIGH] CWE-20 CVE-2019-1743: A vulnerability in the web UI framework of Cisco IOS XE Software could allow an authenticated, remot
A vulnerability in the web UI framework of Cisco IOS XE Software could allow an authenticated, remote attacker to make unauthorized changes to the filesystem of the affected device. The vulnerability is due to improper input validation. An attacker could exploit this vulnerability by crafting a malicious file and uploading it to the device. An exploit co
nvd
CVE-2023-20186P3CRITICALCVSS 9.1v3.7.0Sv3.7.1S+378 more2023-09-27
CVE-2023-20186 [CRITICAL] CWE-285 CVE-2023-20186: A vulnerability in the Authentication, Authorization, and Accounting (AAA) feature of Cisco IOS Soft
A vulnerability in the Authentication, Authorization, and Accounting (AAA) feature of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to bypass command authorization and copy files to or from the file system of an affected device using the Secure Copy Protocol (SCP).
This vulnerability is due to incorrect
nvd
CVE-2020-3400P3HIGHCVSS 8.8vn/a2020-09-24
CVE-2020-3400 [HIGH] CWE-862 CVE-2020-3400: A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote
A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to utilize parts of the web UI for which they are not authorized.The vulnerability is due to insufficient authorization of web UI access requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to the web UI. A succ
nvd
CVE-2021-1433P3HIGHCVSS 8.1vn/a2021-03-24
CVE-2021-1433 [HIGH] CWE-119 CVE-2021-1433: A vulnerability in the vDaemon process in Cisco IOS XE SD-WAN Software could allow an unauthenticate
A vulnerability in the vDaemon process in Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to cause a buffer overflow on an affected device. This vulnerability is due to insufficient bounds checking when the device processes traffic. An attacker could exploit this vulnerability by sending crafted traffic to the device. The at
nvd
CVE-2024-20437P3HIGHCVSS 8.8v17.3.2v17.3.3+64 more2024-09-25
CVE-2024-20437 [HIGH] CWE-352 CVE-2024-20437: A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauth
A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to perform a cross-site request forgery (CSRF) attack and execute commands on the CLI of an affected device.
This vulnerability is due to insufficient CSRF protections for the web-based management interface of an affected devi
nvd
CVE-2026-20084P3HIGHCVSS 8.6v16.6.1v16.6.2+105 more2026-03-25
CVE-2026-20084 [HIGH] CWE-400 CVE-2026-20084: A vulnerability in the DHCP snooping feature of Cisco IOS XE Software could allow an unauthenticated
A vulnerability in the DHCP snooping feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause BOOTP packets to be forwarded between VLANs, resulting in a denial of service (DoS) condition.
This vulnerability is due to improper handling of BOOTP packets on Cisco Catalyst 9000 Series Switches. An attacker could exploit t
nvd
CVE-2019-1862P3HIGHCVSS 7.2v3.2.0JA2019-05-13
CVE-2019-1862 [HIGH] CWE-20 CVE-2019-1862: A vulnerability in the web-based user interface (Web UI) of Cisco IOS XE Software could allow an aut
A vulnerability in the web-based user interface (Web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vulnerability occurs because the affected software improperly sanitizes user-supplied input. An attacker who has valid administrat
nvd
CVE-2025-20239P3HIGHCVSS 8.6v3.14.0Sv3.14.1S+332 more2025-08-14
CVE-2025-20239 [HIGH] CWE-401 CVE-2025-20239: A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Firewall Adaptive Security Appliance (ASA) Software, and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a denial of service (DoS) condition.
This vul
nvd
CVE-2026-20012P3HIGHCVSS 8.6v3.5.0Ev3.5.1E+376 more2026-03-25
CVE-2026-20012 [HIGH] CWE-401 CVE-2026-20012: A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco
A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE Software, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a denial of service (DoS) co
nvd
CVE-2024-20455P3HIGHCVSS 8.6v17.1.1v17.1.1a+85 more2024-09-25
CVE-2024-20455 [HIGH] CWE-371 CVE-2024-20455: A vulnerability in the process that classifies traffic that is going to the Unified Threat Defense (
A vulnerability in the process that classifies traffic that is going to the Unified Threat Defense (UTD) component of Cisco IOS XE Software in controller mode could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
This vulnerability exists because UTD improperly handles certain packets as th
nvd
CVE-2025-20315P3HIGHCVSS 8.6v3.7.0Sv3.7.1S+338 more2025-09-24
CVE-2025-20315 [HIGH] CWE-805 CVE-2025-20315: A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS XE Software
A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, causing a denial of service (DoS) condition.
This vulnerability is due to improper handling of malformed Control and Provisioning of Wireless Access Points (CAPWAP)
nvd
CVE-2026-20086P3HIGHCVSS 8.6v17.14.1v17.15.1+8 more2026-03-25
CVE-2026-20086 [HIGH] CWE-230 CVE-2026-20086: A vulnerability in the processing of Control and Provisioning of Wireless Access Points (CAPWAP) pac
A vulnerability in the processing of Control and Provisioning of Wireless Access Points (CAPWAP) packets of Cisco IOS XE Wireless Controller Software for the Catalyst CW9800 Family could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
This vulnerability is due to improper handling of a malf
nvd
CVE-2019-1756P3HIGHCVSS 7.2v3.2.0JAv16.7.1+12 more2019-03-28
CVE-2019-1756 [HIGH] CWE-20 CVE-2019-1756: A vulnerability in Cisco IOS XE Software could allow an authenticated, remote attacker to execute co
A vulnerability in Cisco IOS XE Software could allow an authenticated, remote attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vulnerability occurs because the affected software improperly sanitizes user-supplied input. An attacker who has valid administrator access to an affected device could exp
nvd
CVE-2018-0470P3HIGHCVSS 8.6vn/a2018-10-05
CVE-2018-0470 [HIGH] CWE-399 CVE-2018-0470: A vulnerability in the web framework of Cisco IOS XE Software could allow an unauthenticated, remote
A vulnerability in the web framework of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a buffer overflow condition on an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to the affected software improperly parsing malformed HTTP packets that are destined to a device. An attacker
nvd
CVE-2020-3527P3HIGHCVSS 8.6vn/a2020-09-24
CVE-2020-3527 [HIGH] CWE-20 CVE-2020-3527: A vulnerability in the Polaris kernel of Cisco Catalyst 9200 Series Switches could allow an unauthen
A vulnerability in the Polaris kernel of Cisco Catalyst 9200 Series Switches could allow an unauthenticated, remote attacker to crash the device. The vulnerability is due to insufficient packet size validation. An attacker could exploit this vulnerability by sending jumbo frames or frames larger than the configured MTU size to the management interface of
nvd