Cisco Ios Xe Software vulnerabilities
236 known vulnerabilities affecting cisco/cisco_ios_xe_software.
Total CVEs
236
CISA KEV
6
actively exploited
Public exploits
4
Exploited in wild
9
Severity breakdown
CRITICAL10HIGH135MEDIUM91
Vulnerabilities
Page 8 of 12
CVE-2021-1382P3MEDIUMCVSS 6.7vn/a2021-03-24
CVE-2021-1382 [MEDIUM] CWE-77 CVE-2021-1382: A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attac
A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitrary commands to be executed with root privileges on the underlying operating system. This vulnerability is due to insufficient input validation on certain CLI commands. An attacker could exploit this vulnerability by authenticating to
nvd
CVE-2024-20306P3MEDIUMCVSS 6.7v17.10.1v17.10.1a+7 more2024-03-27
CVE-2024-20306 [MEDIUM] CWE-233 CVE-2024-20306: A vulnerability in the Unified Threat Defense (UTD) configuration CLI of Cisco IOS XE Software could
A vulnerability in the Unified Threat Defense (UTD) configuration CLI of Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary commands as root on the underlying host operating system. To exploit this vulnerability, an attacker must have level 15 privileges on the affected device.
This vulnerability is due to insuff
nvd
CVE-2025-20313P3MEDIUMCVSS 6.7v17.3.1v17.3.2+117 more2025-09-24
CVE-2025-20313 [MEDIUM] CWE-35 CVE-2025-20313: Multiple vulnerabilities in Cisco IOS XE Software of could allow an authenticated, local attacker wi
Multiple vulnerabilities in Cisco IOS XE Software of could allow an authenticated, local attacker with level-15 privileges or an unauthenticated attacker with physical access to the device to execute persistent code at boot time and break the chain of trust.
These vulnerabilities are due path traversal and improper image integrity validation. A succe
nvd
CVE-2026-20114P3MEDIUMCVSS 5.4v16.11.1v16.11.1a+174 more2026-03-25
CVE-2026-20114 [MEDIUM] CWE-1286 CVE-2026-20114: A vulnerability in the Lobby Ambassador web-based management API of Cisco IOS XE Software could allo
A vulnerability in the Lobby Ambassador web-based management API of Cisco IOS XE Software could allow an authenticated, remote attacker to elevate their privileges and access management APIs that would not normally be available for Lobby Ambassador users.
This vulnerability exists because parameters that are received by an API endpoint are not suff
nvd
CVE-2020-3497P3HIGHCVSS 7.4vn/a2020-09-24
CVE-2020-3497 [HIGH] CWE-20 CVE-2020-3497: Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol
Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition of an affected device. These vulnerabilities are due to insufficient val
nvd
CVE-2020-3493P3HIGHCVSS 7.4vn/a2020-09-24
CVE-2020-3493 [HIGH] CWE-20 CVE-2020-3493: Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol
Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition of an affected device. These vulnerabilities are due to insufficient val
nvd
CVE-2020-3489P3HIGHCVSS 7.4vn/a2020-09-24
CVE-2020-3489 [HIGH] CWE-20 CVE-2020-3489: Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol
Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition of an affected device. These vulnerabilities are due to insufficient val
nvd
CVE-2020-3488P3HIGHCVSS 7.4vn/a2020-09-24
CVE-2020-3488 [HIGH] CWE-20 CVE-2020-3488: Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol
Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition of an affected device. These vulnerabilities are due to insufficient val
nvd
CVE-2022-20915P3HIGHCVSS 7.4vn/a2022-10-10
CVE-2022-20915 [HIGH] CWE-115 CVE-2022-20915: A vulnerability in the implementation of IPv6 VPN over MPLS (6VPE) with Zone-Based Firewall (ZBFW) o
A vulnerability in the implementation of IPv6 VPN over MPLS (6VPE) with Zone-Based Firewall (ZBFW) of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper error handling of an IPv6 packet that is forwarded from an MPLS and ZBFW-
nvd
CVE-2024-20313P3HIGHCVSS 7.4v17.5.1v17.5.1a+36 more2024-04-24
CVE-2024-20313 [HIGH] CWE-120 CVE-2024-20313: A vulnerability in the OSPF version 2 (OSPFv2) feature of Cisco IOS XE Software could allow an unaut
A vulnerability in the OSPF version 2 (OSPFv2) feature of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to improper validation of OSPF updates that are processed by a device. An attacker could exploi
nvd
CVE-2019-1759P3MEDIUMCVSS 5.3v3.2.0JAv16.2.1+43 more2019-03-28
CVE-2019-1759 [MEDIUM] CWE-284 CVE-2019-1759: A vulnerability in access control list (ACL) functionality of the Gigabit Ethernet Management interf
A vulnerability in access control list (ACL) functionality of the Gigabit Ethernet Management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to reach the configured IP addresses on the Gigabit Ethernet Management interface. The vulnerability is due to a logic error that was introduced in the Cisco IOS XE Software 16
nvd
CVE-2021-1383P3MEDIUMCVSS 6.7vn/a2021-03-24
CVE-2021-1383 [MEDIUM] CWE-20 CVE-2021-1383: Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, lo
Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to access the underlying operating system with root privileges. These vulnerabilities are due to insufficient input validation of certain CLI commands. An attacker could exploit these vulnerabilities by authenticating to the device and submi
nvd
CVE-2019-12661P3MEDIUMCVSS 6.7≥ unspecified, < n/a2019-09-25
CVE-2019-12661 [MEDIUM] CWE-77 CVE-2019-12661: A vulnerability in a Virtualization Manager (VMAN) related CLI command of Cisco IOS XE Software coul
A vulnerability in a Virtualization Manager (VMAN) related CLI command of Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying Linux operating system with a privilege level of root. The vulnerability is due to insufficient validation of arguments passed to a specific VMAN CLI command on th
nvd
CVE-2022-20855P3MEDIUMCVSS 6.7vn/a2022-09-30
CVE-2022-20855 [MEDIUM] CWE-266 CVE-2022-20855: A vulnerability in the self-healing functionality of Cisco IOS XE Software for Embedded Wireless Con
A vulnerability in the self-healing functionality of Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst Access Points could allow an authenticated, local attacker to escape the restricted controller shell and execute arbitrary commands on the underlying operating system of the access point. This vulnerability is due to improper chec
nvd
CVE-2022-20676P3MEDIUMCVSS 6.7vn/a2022-04-15
CVE-2022-20676 [MEDIUM] CWE-250 CVE-2022-20676: A vulnerability in the Tool Command Language (Tcl) interpreter of Cisco IOS XE Software could allow
A vulnerability in the Tool Command Language (Tcl) interpreter of Cisco IOS XE Software could allow an authenticated, local attacker to escalate from privilege level 15 to root-level privileges. This vulnerability is due to insufficient input validation of data that is passed into the Tcl interpreter. An attacker could exploit this vulnerability by l
nvd
CVE-2021-34723P3MEDIUMCVSS 6.7vn/a2021-09-23
CVE-2021-34723 [MEDIUM] CWE-668 CVE-2021-34723: A vulnerability in a specific CLI command that is run on Cisco IOS XE SD-WAN Software could allow an
A vulnerability in a specific CLI command that is run on Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the configuration database of an affected device. This vulnerability is due to insufficient validation of specific CLI command parameters. An attacker could exploit this vulnerability by i
nvd
CVE-2021-1376P3MEDIUMCVSS 6.7vn/a2021-03-24
CVE-2021-1376 [MEDIUM] CWE-347 CVE-2021-1376: Multiple vulnerabilities in the fast reload feature of Cisco IOS XE Software running on Cisco Cataly
Multiple vulnerabilities in the fast reload feature of Cisco IOS XE Software running on Cisco Catalyst 3850, Cisco Catalyst 9300, and Cisco Catalyst 9300L Series Switches could allow an authenticated, local attacker to either execute arbitrary code on the underlying operating system, install and boot a malicious software image, or execute unsigned bin
nvd
CVE-2021-1375P3MEDIUMCVSS 6.7vn/a2021-03-24
CVE-2021-1375 [MEDIUM] CWE-347 CVE-2021-1375: Multiple vulnerabilities in the fast reload feature of Cisco IOS XE Software running on Cisco Cataly
Multiple vulnerabilities in the fast reload feature of Cisco IOS XE Software running on Cisco Catalyst 3850, Cisco Catalyst 9300, and Cisco Catalyst 9300L Series Switches could allow an authenticated, local attacker to either execute arbitrary code on the underlying operating system, install and boot a malicious software image, or execute unsigned bin
nvd
CVE-2024-20414P3MEDIUMCVSS 6.5v3.2.0SGv3.2.1SG+429 more2024-09-25
CVE-2024-20414 [MEDIUM] CWE-285 CVE-2024-20414: A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow an
A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system through the web UI.
This vulnerability is due to incorrectly accepting configuration changes through the HTTP GET method. An attacker could e
nvd
CVE-2021-34767P4HIGHCVSS 7.4vn/a2021-09-23
CVE-2021-34767 [HIGH] CWE-670 CVE-2021-34767: A vulnerability in IPv6 traffic processing of Cisco IOS XE Wireless Controller Software for Cisco Ca
A vulnerability in IPv6 traffic processing of Cisco IOS XE Wireless Controller Software for Cisco Catalyst 9000 Family Wireless Controllers could allow an unauthenticated, adjacent attacker to cause a Layer 2 (L2) loop in a configured VLAN, resulting in a denial of service (DoS) condition for that VLAN. The vulnerability is due to a logic error when p
nvd