cbcvebase.

Cisco Ios Xe Software vulnerabilities

236 known vulnerabilities affecting cisco/cisco_ios_xe_software.

Total CVEs
236
CISA KEV
6
actively exploited
Public exploits
4
Exploited in wild
9
Severity breakdown
CRITICAL10HIGH135MEDIUM91

Vulnerabilities

Page 9 of 12
CVE-2020-3494P3HIGHCVSS 7.4vn/a2020-09-24
CVE-2020-3494 [HIGH] CWE-20 CVE-2020-3494: Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition of an affected device. These vulnerabilities are due to insufficient val
nvd
CVE-2020-3508P3HIGHCVSS 7.4vn/a2020-09-24
CVE-2020-3508 [HIGH] CWE-400 CVE-2020-3508: A vulnerability in the IP Address Resolution Protocol (ARP) feature of Cisco IOS XE Software for Cis A vulnerability in the IP Address Resolution Protocol (ARP) feature of Cisco IOS XE Software for Cisco ASR 1000 Series Aggregation Services Routers with a 20-Gbps Embedded Services Processor (ESP) installed could allow an unauthenticated, adjacent attacker to cause an affected device to reload, resulting in a denial of service condition. The vulnerabili
nvd
CVE-2021-1621P4HIGHCVSS 7.4vn/a2021-09-23
CVE-2021-1621 [HIGH] CWE-399 CVE-2021-1621: A vulnerability in the Layer 2 punt code of Cisco IOS XE Software could allow an unauthenticated, ad A vulnerability in the Layer 2 punt code of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a queue wedge on an interface that receives specific Layer 2 frames, resulting in a denial of service (DoS) condition. This vulnerability is due to improper handling of certain Layer 2 frames. An attacker could exploit this vulner
nvd
CVE-2022-20694P4MEDIUMCVSS 6.8vn/a2022-04-15
CVE-2022-20694 [MEDIUM] CWE-617 CVE-2022-20694: A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Ci A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the Border Gateway Protocol (BGP) process to crash, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of a specific RPKI t
nvd
CVE-2023-20100P3MEDIUMCVSS 6.8vn/a2023-03-23
CVE-2023-20100 [MEDIUM] CWE-694 CVE-2023-20100: A vulnerability in the access point (AP) joining process of the Control and Provisioning of Wireless A vulnerability in the access point (AP) joining process of the Control and Provisioning of Wireless Access Points (CAPWAP) protocol of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to a logic erro
nvd
CVE-2018-0481P4MEDIUMCVSS 6.7vn/a2018-10-05
CVE-2018-0481 [MEDIUM] CWE-77 CVE-2018-0481: A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attac A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vulnerability exist because the affected software improperly sanitizes command arguments, failing to prevent access to certain internal data structures
nvd
CVE-2018-0477P4MEDIUMCVSS 6.7vn/a2018-10-05
CVE-2018-0477 [MEDIUM] CWE-77 CVE-2018-0477: A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attac A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vulnerability exist because the affected software improperly sanitizes command arguments, failing to prevent access to certain internal data structures
nvd
CVE-2018-15368P4MEDIUMCVSS 6.7vn/a2018-10-05
CVE-2018-15368 [MEDIUM] CWE-20 CVE-2018-15368: A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attac A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Linux shell of an affected device and execute arbitrary commands with root privileges on the device. The vulnerability is due to the affected software improperly sanitizing command arguments to prevent modifications
nvd
CVE-2021-1390P4MEDIUMCVSS 6.7vn/a2021-03-24
CVE-2021-1390 [MEDIUM] CWE-123 CVE-2021-1390: A vulnerability in one of the diagnostic test CLI commands of Cisco IOS XE Software could allow an a A vulnerability in one of the diagnostic test CLI commands of Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary code on an affected device. To exploit this vulnerability, the attacker would need to have valid user credentials at privilege level 15. This vulnerability exists because the affected software permits mo
nvd
CVE-2020-3513P4MEDIUMCVSS 6.7vn/a2020-09-24
CVE-2020-3513 [MEDIUM] CWE-749 CVE-2020-3513: Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS XE Software for Cisco ASR 900 Series Aggregation Services Routers with a Route Switch Processor 3 (RSP3) installed could allow an authenticated, local attacker with high privileges to execute persistent code at bootup and break the chain of trust. Thes
nvd
CVE-2020-3416P4MEDIUMCVSS 6.7vn/a2020-09-24
CVE-2020-3416 [MEDIUM] CWE-749 CVE-2020-3416: Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS XE Software for Cisco ASR 900 Series Aggregation Services Routers with a Route Switch Processor 3 (RSP3) installed could allow an authenticated, local attacker with high privileges to execute persistent code at bootup and break the chain of trust. Thes
nvd
CVE-2021-1454P4MEDIUMCVSS 6.7vn/a2021-03-24
CVE-2021-1454 [MEDIUM] CWE-20 CVE-2021-1454: Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, lo Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to access the underlying operating system with root privileges. These vulnerabilities are due to insufficient input validation of certain CLI commands. An attacker could exploit these vulnerabilities by authenticating to the device and submi
nvd
CVE-2025-20314P3MEDIUMCVSS 6.7v17.3.1v17.3.2+117 more2025-09-24
CVE-2025-20314 [MEDIUM] CWE-232 CVE-2025-20314: A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker with level-15 A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker with level-15 privileges or an unauthenticated attacker with physical access to an affected device to execute persistent code at boot time and break the chain of trust. This vulnerability is due to improper validation of software packages. An attacker could exploit
nvd
CVE-2025-20201P4MEDIUMCVSS 6.7v3.7.0Sv3.7.1S+408 more2025-05-07
CVE-2025-20201 [MEDIUM] CWE-754 CVE-2025-20201: A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker wit A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device. This vulnerability is due to insufficient input validation when processing specific configuration commands. An attacker could exploit this vul
nvd
CVE-2021-34696P4MEDIUMCVSS 5.8vn/a2021-09-23
CVE-2021-34696 [MEDIUM] CWE-284 CVE-2021-34696: A vulnerability in the access control list (ACL) programming of Cisco ASR 900 and ASR 920 Series Agg A vulnerability in the access control list (ACL) programming of Cisco ASR 900 and ASR 920 Series Aggregation Services Routers could allow an unauthenticated, remote attacker to bypass a configured ACL. This vulnerability is due to incorrect programming of hardware when an ACL is configured using a method other than the configuration CLI. An attacker
nvd
CVE-2026-20104P4MEDIUMCVSS 6.1v16.12.8v16.12.6+57 more2026-03-25
CVE-2026-20104 [MEDIUM] CWE-124 CVE-2026-20104: A vulnerability in the bootloader of Cisco IOS XE Software for Cisco Catalyst 9200 Series Switches, A vulnerability in the bootloader of Cisco IOS XE Software for Cisco Catalyst 9200 Series Switches, Cisco Catalyst ESS9300 Embedded Series Switches, Cisco Catalyst IE9310 and IE9320 Rugged Series Switches, and Cisco IE3500 and IE3505 Rugged Series Switches could allow an authenticated, local attacker with level-15 privileges or an unauthenticated att
nvd
CVE-2026-20115P4MEDIUMCVSS 6.1v17.14.1v17.14.1a+23 more2026-03-25
CVE-2026-20115 [MEDIUM] CWE-319 CVE-2026-20115: A vulnerability in Cisco IOS XE Software for Cisco Meraki could allow a remote, unauthenticated atta A vulnerability in Cisco IOS XE Software for Cisco Meraki could allow a remote, unauthenticated attacker to view confidential device information. This vulnerability is due to a device configuration upload being performed over an insecure tunnel. An attacker could exploit this vulnerability by conducting an on-path attack between the affected device
nvd
CVE-2025-20155P3MEDIUMCVSS 6.0v17.9.4v17.9.5+26 more2025-05-07
CVE-2025-20155 [MEDIUM] CWE-1287 CVE-2025-20155: A vulnerability in the bootstrap loading of Cisco IOS XE Software could allow an authenticated, loca A vulnerability in the bootstrap loading of Cisco IOS XE Software could allow an authenticated, local attacker to write arbitrary files to an affected system. This vulnerability is due to insufficient input validation of the bootstrap file that is read by the system software when a device is first deployed in SD-WAN mode or when an administrator co
nvd
CVE-2025-20316P3MEDIUMCVSS 5.3v17.7.1v17.10.1+25 more2025-09-24
CVE-2025-20316 [MEDIUM] CWE-284 CVE-2025-20316: A vulnerability in the access control list (ACL) programming of Cisco IOS XE Software for Cisco Cata A vulnerability in the access control list (ACL) programming of Cisco IOS XE Software for Cisco Catalyst 9500X and 9600X Series Switches could allow an unauthenticated, remote attacker to bypass a configured ACL on an affected device. This vulnerability is due to the flooding of traffic from an unlearned MAC address on a switch virtual interface (SV
nvd
CVE-2026-20113P4MEDIUMCVSS 5.3v16.6.1v16.6.2+225 more2026-03-25
CVE-2026-20113 [MEDIUM] CWE-93 CVE-2026-20113: A vulnerability in the web-based Cisco IOx application hosting environment management interface of C A vulnerability in the web-based Cisco IOx application hosting environment management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to perform a carriage return line feed (CRLF) injection attack against a user. This vulnerability is due to insufficient validation of user input. An attacker could exploit this vulne
nvd
Cisco Ios Xe Software vulnerabilities | cvebase