cbcvebase.

Cisco Ios Xe Software vulnerabilities

236 known vulnerabilities affecting cisco/cisco_ios_xe_software.

Total CVEs
236
CISA KEV
6
actively exploited
Public exploits
4
Exploited in wild
9
Severity breakdown
CRITICAL10HIGH135MEDIUM91

Vulnerabilities

Page 7 of 12
CVE-2021-1442P3HIGHCVSS 7.8vn/a2021-03-24
CVE-2021-1442 [HIGH] CWE-532 CVE-2021-1442: A vulnerability in a diagnostic command for the Plug-and-Play (PnP) subsystem of Cisco IOS XE Softwa A vulnerability in a diagnostic command for the Plug-and-Play (PnP) subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to the level of an Administrator user (level 15) on an affected device. The vulnerability is due to insufficient protection of sensitive information. An attacker with low privileges cou
nvd
CVE-2022-20678P3HIGHCVSS 7.5vn/a2022-04-15
CVE-2022-20678 [HIGH] CWE-413 CVE-2022-20678: A vulnerability in the AppNav-XE feature of Cisco IOS XE Software could allow an unauthenticated, re A vulnerability in the AppNav-XE feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of certain TCP segments. An attacker could exploit this vulnerability by sending a stream of craft
nvd
CVE-2022-20848P3HIGHCVSS 7.5vn/a2022-09-30
CVE-2022-20848 [HIGH] CWE-399 CVE-2022-20848: A vulnerability in the UDP processing functionality of Cisco IOS XE Software for Embedded Wireless C A vulnerability in the UDP processing functionality of Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst 9100 Series Access Points could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to the improper processing of UDP datagrams. An attacker could exploit this vulnerab
nvd
CVE-2024-20278P3MEDIUMCVSS 6.5v17.6.1v17.6.2+41 more2024-03-27
CVE-2024-20278 [MEDIUM] CWE-184 CVE-2024-20278: A vulnerability in the NETCONF feature of Cisco IOS XE Software could allow an authenticated, remote A vulnerability in the NETCONF feature of Cisco IOS XE Software could allow an authenticated, remote attacker to elevate privileges to root on an affected device. This vulnerability is due to improper validation of user-supplied input. An attacker could exploit this vulnerability by sending crafted input over NETCONF to an affected device. A success
nvd
CVE-2025-20193P3MEDIUMCVSS 6.5v17.3.1v17.3.2+85 more2025-05-07
CVE-2025-20193 [MEDIUM] CWE-78 CVE-2025-20193: A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authen A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privileged, remote attacker to perform an injection attack against an affected device.r This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web-based mana
nvd
CVE-2021-1623P3HIGHCVSS 7.7vn/a2021-09-23
CVE-2021-1623 [HIGH] CWE-399 CVE-2021-1623: A vulnerability in the Simple Network Management Protocol (SNMP) punt handling function of Cisco cBR A vulnerability in the Simple Network Management Protocol (SNMP) punt handling function of Cisco cBR-8 Converged Broadband Routers could allow an authenticated, remote attacker to overload a device punt path, resulting in a denial of service (DoS) condition. This vulnerability is due to the punt path being overwhelmed by large quantities of SNMP request
nvd
CVE-2022-20847P3HIGHCVSS 7.5vn/a2022-09-30
CVE-2022-20847 [HIGH] CWE-399 CVE-2022-20847: A vulnerability in the DHCP processing functionality of Cisco IOS XE Wireless Controller Software fo A vulnerability in the DHCP processing functionality of Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to the improper processing of DHCP messages. An attacker could exploit this vulnerability by sending malic
nvd
CVE-2018-0476P3MEDIUMCVSS 5.9vn/a2018-10-05
CVE-2018-0476 [MEDIUM] CWE-399 CVE-2018-0476: A vulnerability in the Network Address Translation (NAT) Session Initiation Protocol (SIP) Applicati A vulnerability in the Network Address Translation (NAT) Session Initiation Protocol (SIP) Application Layer Gateway (ALG) of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to improper processing of SIP packets in transit while NAT is performed on an affected device
nvd
CVE-2022-20810P3MEDIUMCVSS 6.5vn/a2022-09-30
CVE-2022-20810 [MEDIUM] CWE-202 CVE-2022-20810: A vulnerability in the Simple Network Management Protocol (SNMP) of Cisco IOS XE Wireless Controller A vulnerability in the Simple Network Management Protocol (SNMP) of Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family could allow an authenticated, remote attacker to access sensitive information. This vulnerability is due to insufficient restrictions that allow a sensitive configuration detail to be disclosed. An attacker could
nvd
CVE-2025-20338P3MEDIUMCVSS 6.7v3.5.0Ev3.5.1E+372 more2025-09-24
CVE-2025-20338 [MEDIUM] CWE-141 CVE-2025-20338: A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker wit A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with administrative privileges to execute arbitrary commands as root on the underlying operating system of an affected device. This vulnerability is due to insufficient validation of user arguments that are passed to specific CLI commands. An attacker co
nvd
CVE-2025-20311P3HIGHCVSS 7.4v16.6.1v16.6.2+101 more2025-09-24
CVE-2025-20311 [HIGH] CWE-19 CVE-2025-20311: A vulnerability in the handling of certain Ethernet frames in Cisco IOS XE Software for Catalyst 900 A vulnerability in the handling of certain Ethernet frames in Cisco IOS XE Software for Catalyst 9000 Series Switches could allow an unauthenticated, adjacent attacker to cause an egress port to become blocked and drop all outbound traffic. This vulnerability is due to improper handling of crafted Ethernet frames. An attacker could exploit this vulnera
nvd
CVE-2024-20312P3HIGHCVSS 7.4v3.7.0Sv3.7.1S+383 more2024-03-27
CVE-2024-20312 [HIGH] CWE-476 CVE-2024-20312: A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS Soft A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input validation when parsing an ingress IS-IS packet. An atta
nvd
CVE-2025-20189P3HIGHCVSS 7.4v3.16.0Sv3.16.1S+264 more2025-05-07
CVE-2025-20189 [HIGH] CWE-762 CVE-2025-20189: A vulnerability in the Cisco Express Forwarding functionality of Cisco IOS XE Software for Cisco ASR A vulnerability in the Cisco Express Forwarding functionality of Cisco IOS XE Software for Cisco ASR 903 Aggregation Services Routers with Route Switch Processor 3 (RSP3C) could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition. This vulnerability is due to improper memory management when Cisco IOS XE Software
nvd
CVE-2025-20202P3HIGHCVSS 7.4v16.10.1v16.10.1a+151 more2025-05-07
CVE-2025-20202 [HIGH] CWE-805 CVE-2025-20202: A vulnerability in Cisco IOS XE Wireless Controller Software could allow an unauthenticated, adjacen A vulnerability in Cisco IOS XE Wireless Controller Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input validation of access point (AP) Cisco Discovery Protocol (CDP) neighbor reports when they are processed by the wireless contro
nvd
CVE-2026-20004P3HIGHCVSS 7.4v16.9.1v16.9.2+178 more2026-03-25
CVE-2026-20004 [HIGH] CWE-771 CVE-2026-20004: A vulnerability in the TLS library of Cisco IOS XE Software could allow an unauthenticated, adjacent A vulnerability in the TLS library of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to exhaust the available memory of an affected device. This vulnerability is due to improper management of memory resources during TLS connection setup. An attacker could exploit this vulnerability by repeatedly triggering the conditions that
nvd
CVE-2018-0469P3MEDIUMCVSS 6.8vn/a2018-10-05
CVE-2018-0469 [MEDIUM] CWE-415 CVE-2018-0469: A vulnerability in the web user interface of Cisco IOS XE Software could allow an unauthenticated, r A vulnerability in the web user interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to a double-free-in-memory handling by the affected software when specific HTTP requests are processed. An attacker could exploit this vulnerability by sending specific HTTP
nvd
CVE-2020-3390P3HIGHCVSS 7.4vn/a2020-09-24
CVE-2020-3390 [HIGH] CWE-20 CVE-2020-3390: A vulnerability in Simple Network Management Protocol (SNMP) trap generation for wireless clients of A vulnerability in Simple Network Management Protocol (SNMP) trap generation for wireless clients of the Cisco IOS XE Wireless Controller Software for the Cisco Catalyst 9000 Family could allow an unauthenticated, adjacent attacker to cause the device to unexpectedly reload, causing a denial of service (DoS) condition on an affected device. The vulnerabi
nvd
CVE-2021-1403P3HIGHCVSS 7.4vn/a2021-03-24
CVE-2021-1403 [HIGH] CWE-345 CVE-2021-1403: A vulnerability in the web UI feature of Cisco IOS XE Software could allow an unauthenticated, remot A vulnerability in the web UI feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site WebSocket hijacking (CSWSH) attack and cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient HTTP protections in the web UI on an affected device. An attacker could ex
nvd
CVE-2024-20303P3HIGHCVSS 7.4v17.2.1v17.2.1r+66 more2024-03-27
CVE-2024-20303 [HIGH] CWE-459 CVE-2024-20303: A vulnerability in the multicast DNS (mDNS) gateway feature of Cisco IOS XE Software for Wireless LA A vulnerability in the multicast DNS (mDNS) gateway feature of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition. This vulnerability is due to improper management of mDNS client entries. An attacker could exploit this vulnerability by connecting to t
nvd
CVE-2025-20140P3HIGHCVSS 7.4v16.4.1v16.4.2+192 more2025-05-07
CVE-2025-20140 [HIGH] CWE-789 CVE-2025-20140: A vulnerability in the Wireless Network Control daemon (wncd) of Cisco IOS XE Software for Wireless A vulnerability in the Wireless Network Control daemon (wncd) of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, adjacent wireless attacker to cause a denial of service (DoS) condition. This vulnerability is due to improper memory management. An attacker could exploit this vulnerability by sending a series of I
nvd
Cisco Ios Xe Software vulnerabilities | cvebase