cbcvebase.

Cisco Ios Xr Software vulnerabilities

107 known vulnerabilities affecting cisco/cisco_ios_xr_software.

Total CVEs
107
CISA KEV
4
actively exploited
Public exploits
0
Exploited in wild
5
Severity breakdown
CRITICAL3HIGH57MEDIUM47

Vulnerabilities

Page 3 of 6
CVE-2020-3530P3HIGHCVSS 8.4vn/a2020-09-04
CVE-2020-3530 [HIGH] CWE-264 CVE-2020-3530: A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could a A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local attacker to execute that command, even though administrative privileges should be required. The attacker must have valid credentials on the affected device. The vulnerability is due to incorrect mapping in the source code of t
nvd
CVE-2019-1711P3HIGHCVSS 7.5≥ unspecified, < 6.5.12019-04-17
CVE-2019-1711 [HIGH] CWE-20 CVE-2019-1711: A vulnerability in the Event Management Service daemon (emsd) of Cisco IOS XR Software could allow a A vulnerability in the Event Management Service daemon (emsd) of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper handling of gRPC requests. An attacker could exploit this vulnerability by repeatedly sending unauthenticated gRPC r
nvd
CVE-2019-16021P3HIGHCVSS 7.5vn/a2020-09-23
CVE-2019-16021 [HIGH] CWE-399 CVE-2019-16021: Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerabilities are due to incorrect processing of BGP update messages that contain crafted EVPN attributes. An attac
nvd
CVE-2021-34737P3HIGHCVSS 7.5vn/a2021-09-09
CVE-2021-34737 [HIGH] CWE-476 CVE-2021-34737: A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow a A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to trigger a crash of the dhcpd process, resulting in a denial of service (DoS) condition. This vulnerability exists because certain DHCPv4 messages are improperly validated when they are processed by an affected devic
nvd
CVE-2019-16023P3HIGHCVSS 7.5vn/a2020-09-23
CVE-2019-16023 [HIGH] CWE-399 CVE-2019-16023: Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerabilities are due to incorrect processing of BGP update messages that contain crafted EVPN attributes. An attac
nvd
CVE-2023-20049P3HIGHCVSS 7.5vn/a2023-03-09
CVE-2023-20049 [HIGH] CWE-805 CVE-2023-20049: A vulnerability in the bidirectional forwarding detection (BFD) hardware offload feature of Cisco IO A vulnerability in the bidirectional forwarding detection (BFD) hardware offload feature of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers, ASR 9902 Compact High-Performance Routers, and ASR 9903 Compact High-Performance Routers could allow an unauthenticated, remote attacker to cause a line card to reset, resulting in a
nvd
CVE-2020-3473P3HIGHCVSS 7.8vn/a2020-09-04
CVE-2020-3473 [HIGH] CWE-264 CVE-2020-3473: A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could a A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local CLI shell user to elevate privileges and gain full administrative control of the device. The vulnerability is due to incorrect mapping of a command to task groups within the source code. An attacker could exploit this vulnerab
nvd
CVE-2025-20340P3HIGHCVSS 7.4v6.5.3v6.5.29+103 more2025-09-10
CVE-2025-20340 [HIGH] CWE-400 CVE-2025-20340: A vulnerability in the Address Resolution Protocol (ARP) implementation of Cisco IOS XR Software cou A vulnerability in the Address Resolution Protocol (ARP) implementation of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to trigger a broadcast storm, leading to a denial of service (DoS) condition on an affected device. This vulnerability is due to how Cisco IOS XR Software processes a high, sustained rate of ARP traffic hi
nvd
CVE-2021-34728P3HIGHCVSS 7.8vn/a2021-09-09
CVE-2021-34728 [HIGH] CWE-78 CVE-2021-34728: Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local att Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker with a low-privileged account to elevate privileges on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-34719P3HIGHCVSS 7.8vn/a2021-09-09
CVE-2021-34719 [HIGH] CWE-78 CVE-2021-34719: Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local att Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker with a low-privileged account to elevate privileges on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-1389P3MEDIUMCVSS 6.5vn/a2021-02-04
CVE-2021-1389 [MEDIUM] CWE-284 CVE-2021-1389: A vulnerability in the IPv6 traffic processing of Cisco IOS XR Software and Cisco NX-OS Software for A vulnerability in the IPv6 traffic processing of Cisco IOS XR Software and Cisco NX-OS Software for certain Cisco devices could allow an unauthenticated, remote attacker to bypass an IPv6 access control list (ACL) that is configured for an interface of an affected device. The vulnerability is due to improper processing of IPv6 traffic that is sent th
nvd
CVE-2026-20118P3MEDIUMCVSS 6.8v7.9.1v7.10.1+21 more2026-03-11
CVE-2026-20118 [MEDIUM] CWE-460 CVE-2026-20118: A vulnerability in the handling of an Egress Packet Network Interface (EPNI) Aligner interrupt in Ci A vulnerability in the handling of an Egress Packet Network Interface (EPNI) Aligner interrupt in Cisco IOS XR Software for Cisco Network Convergence System (NCS) 5500 Series with NC57 line cards and Cisco NCS 5700 Routers and Cisco IOS XR Software for Third Party Software could allow an unauthenticated, remote attacker to cause the network processi
nvd
CVE-2026-20074P3HIGHCVSS 7.4v7.8.1v7.9.1+30 more2026-03-11
CVE-2026-20074 [HIGH] CWE-1287 CVE-2026-20074: A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) multi-instance routing fea A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) multi-instance routing feature of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the IS-IS process to restart unexpectedly. This vulnerability is due to insufficient input validation of ingress IS-IS packets. An attacker could exploit this vul
nvd
CVE-2024-20327P3HIGHCVSS 7.4v5.2.0v5.2.2+59 more2024-03-13
CVE-2024-20327 [HIGH] CWE-20 CVE-2024-20327: A vulnerability in the PPP over Ethernet (PPPoE) termination feature of Cisco IOS XR Software for Ci A vulnerability in the PPP over Ethernet (PPPoE) termination feature of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, adjacent attacker to crash the ppp_ma process, resulting in a denial of service (DoS) condition. This vulnerability is due to the improper handling of malformed PPPoE packet
nvd
CVE-2024-20406P3HIGHCVSS 7.4v7.4.1v6.8.1+28 more2024-09-11
CVE-2024-20406 [HIGH] CWE-20 CVE-2024-20406: A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (I A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input validation of ingress IS-IS packets. An attacke
nvd
CVE-2021-1440P3MEDIUMCVSS 6.8v6.6.1v6.5.3+19 more2024-11-18
CVE-2021-1440 [MEDIUM] CWE-617 CVE-2021-1440: A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Ci A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause the Border Gateway Protocol (BGP) process to crash, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of a specific RPKI to
nvd
CVE-2021-34713P3HIGHCVSS 7.4vn/a2021-09-09
CVE-2021-34713 [HIGH] CWE-399 CVE-2021-34713: A vulnerability in the Layer 2 punt code of Cisco IOS XR Software running on Cisco ASR 9000 Series A A vulnerability in the Layer 2 punt code of Cisco IOS XR Software running on Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, adjacent attacker to cause the affected line card to reboot. This vulnerability is due to incorrect handling of specific Ethernet frames that cause a spin loop that can make the network process
nvd
CVE-2024-20318P3HIGHCVSS 7.4v6.5.2v6.5.3+34 more2024-03-13
CVE-2024-20318 [HIGH] CWE-20 CVE-2024-20318: A vulnerability in the Layer 2 Ethernet services of Cisco IOS XR Software could allow an unauthentic A vulnerability in the Layer 2 Ethernet services of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the line card network processor to reset, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of specific Ethernet frames that are received on line cards that have the Lay
nvd
CVE-2024-20317P3HIGHCVSS 7.4v7.7.1v7.8.1+8 more2024-09-11
CVE-2024-20317 [HIGH] CWE-684 CVE-2024-20317: A vulnerability in the handling of specific Ethernet frames by Cisco IOS XR Software for various Cis A vulnerability in the handling of specific Ethernet frames by Cisco IOS XR Software for various Cisco Network Convergence System (NCS) platforms could allow an unauthenticated, adjacent attacker to cause critical priority packets to be dropped, resulting in a denial of service (DoS) condition. This vulnerability is due to incorrect classification of
nvd
CVE-2025-20141P3HIGHCVSS 7.4v7.9.22025-03-12
CVE-2025-20141 [HIGH] CWE-770 CVE-2025-20141: A vulnerability in the handling of specific packets that are punted from a line card to a route proc A vulnerability in the handling of specific packets that are punted from a line card to a route processor in Cisco IOS XR Software Release 7.9.2 could allow an unauthenticated, adjacent attacker to cause control plane traffic to stop working on multiple Cisco IOS XR platforms. This vulnerability is due to incorrect handling of packets that are punted
nvd
Cisco Ios Xr Software vulnerabilities | cvebase