Cisco Ios Xe Software 16.4.1 vulnerabilities
3 known vulnerabilities affecting cisco/cisco_ios_xe_software_16.4.1.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM3
Vulnerabilities
Page 1 of 1
CVE-2020-3220MEDIUMCVSS 6.8vn/a2020-06-03
CVE-2020-3220 [MEDIUM] CWE-345 CVE-2020-3220: A vulnerability in the hardware crypto driver of Cisco IOS XE Software for Cisco 4300 Series Integra
A vulnerability in the hardware crypto driver of Cisco IOS XE Software for Cisco 4300 Series Integrated Services Routers and Cisco Catalyst 9800-L Wireless Controllers could allow an unauthenticated, remote attacker to disconnect legitimate IPsec VPN sessions to an affected device. The vulnerability is due to insufficient verification of authenticity
cvelistv5nvd
CVE-2019-12666MEDIUMCVSS 6.7≥ unspecified, < n/a2019-09-25
CVE-2019-12666 [MEDIUM] CWE-22 CVE-2019-12666: A vulnerability in the Guest Shell of Cisco IOS XE Software could allow an authenticated, local atta
A vulnerability in the Guest Shell of Cisco IOS XE Software could allow an authenticated, local attacker to perform directory traversal on the base Linux operating system of Cisco IOS XE Software. The vulnerability is due to incomplete validation of certain commands. An attacker could exploit this vulnerability by first accessing the Guest Shell and
cvelistv5nvd
CVE-2019-12667MEDIUMCVSS 4.8≥ unspecified, < n/a2019-09-25
CVE-2019-12667 [MEDIUM] CWE-79 CVE-2019-12667: A vulnerability in the web framework code of Cisco IOS XE Software could allow an authenticated, rem
A vulnerability in the web framework code of Cisco IOS XE Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of the affected software. The vulnerability is due to insufficient input validation of some parameters that are passed to the web server of the affec
cvelistv5nvd