Cisco Ios Xr Software vulnerabilities
107 known vulnerabilities affecting cisco/cisco_ios_xr_software.
Total CVEs
107
CISA KEV
4
actively exploited
Public exploits
0
Exploited in wild
5
Severity breakdown
CRITICAL3HIGH57MEDIUM47
Vulnerabilities
Page 5 of 6
CVE-2023-20190P4MEDIUMCVSS 5.3v5.2.0v5.2.1+79 more2023-09-13
CVE-2023-20190 [MEDIUM] CWE-264 CVE-2023-20190: A vulnerability in the classic access control list (ACL) compression feature of Cisco IOS XR Softwar
A vulnerability in the classic access control list (ACL) compression feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass the protection that is offered by a configured ACL on an affected device.
This vulnerability is due to incorrect destination address range encoding in the compression module of an ACL that is
nvd
CVE-2021-1244P4MEDIUMCVSS 6.7vn/a2021-02-04
CVE-2021-1244 [MEDIUM] CWE-347 CVE-2021-1244: Multiple vulnerabilities in Cisco Network Convergence System (NCS) 540 Series Routers, only when run
Multiple vulnerabilities in Cisco Network Convergence System (NCS) 540 Series Routers, only when running Cisco IOS XR NCS540L software images, and Cisco IOS XR Software for the Cisco 8000 Series Routers could allow an authenticated, local attacker to execute unsigned code during the boot process on an affected device. For more information about these
nvd
CVE-2021-1136P4MEDIUMCVSS 6.7vn/a2021-02-04
CVE-2021-1136 [MEDIUM] CWE-347 CVE-2021-1136: Multiple vulnerabilities in Cisco Network Convergence System (NCS) 540 Series Routers, only when run
Multiple vulnerabilities in Cisco Network Convergence System (NCS) 540 Series Routers, only when running Cisco IOS XR NCS540L software images, and Cisco IOS XR Software for the Cisco 8000 Series Routers could allow an authenticated, local attacker to execute unsigned code during the boot process on an affected device. For more information about these
nvd
CVE-2021-34709P4MEDIUMCVSS 6.4vn/a2021-09-09
CVE-2021-34709 [MEDIUM] CWE-347 CVE-2021-34709: Multiple vulnerabilities in image verification checks of Cisco Network Convergence System (NCS) 540
Multiple vulnerabilities in image verification checks of Cisco Network Convergence System (NCS) 540 Series Routers, only when running Cisco IOS XR NCS540L software images, and Cisco IOS XR Software for Cisco 8000 Series Routers could allow an authenticated, local attacker to execute arbitrary code on the underlying operating system. For more informat
nvd
CVE-2019-1842P4MEDIUMCVSS 5.4≥ unspecified, < 6.1.42019-06-05
CVE-2019-1842 [MEDIUM] CWE-285 CVE-2019-1842: A vulnerability in the Secure Shell (SSH) authentication function of Cisco IOS XR Software could all
A vulnerability in the Secure Shell (SSH) authentication function of Cisco IOS XR Software could allow an authenticated, remote attacker to successfully log in to an affected device using two distinct usernames. The vulnerability is due to a logic error that may occur when certain sequences of actions are processed during an SSH login event on the aff
nvd
CVE-2020-3120P4MEDIUMCVSS 6.5≥ unspecified, < 2.3.1.1732020-02-05
CVE-2020-3120 [MEDIUM] CWE-190 CVE-2020-3120: A vulnerability in the Cisco Discovery Protocol implementation for Cisco FXOS Software, Cisco IOS XR
A vulnerability in the Cisco Discovery Protocol implementation for Cisco FXOS Software, Cisco IOS XR Software, and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to a missing check when the affected software proce
nvd
CVE-2023-20233P4MEDIUMCVSS 6.5v5.2.0v5.2.1+57 more2023-09-13
CVE-2023-20233 [MEDIUM] CWE-476 CVE-2023-20233: A vulnerability in the Connectivity Fault Management (CFM) feature of Cisco IOS XR Software could al
A vulnerability in the Connectivity Fault Management (CFM) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
This vulnerability is due to incorrect processing of invalid continuity check messages (CCMs). An attacker could exploit this vulnerability by
nvd
CVE-2019-1909P4MEDIUMCVSS 5.9≥ unspecified, < 6.4.22019-07-06
CVE-2019-1909 [MEDIUM] CWE-20 CVE-2019-1909: A vulnerability in the implementation of Border Gateway Protocol (BGP) functionality in Cisco IOS XR
A vulnerability in the implementation of Border Gateway Protocol (BGP) functionality in Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected system. The vulnerability is due to incorrect processing of certain BGP update messages. An attacker could exploit this vulnerability by
nvd
CVE-2020-3190P4MEDIUMCVSS 5.8≥ unspecified, < n/a2020-03-04
CVE-2020-3190 [MEDIUM] CWE-400 CVE-2020-3190: A vulnerability in the IPsec packet processor of Cisco IOS XR Software could allow an unauthenticate
A vulnerability in the IPsec packet processor of Cisco IOS XR Software could allow an unauthenticated remote attacker to cause a denial of service (DoS) condition for IPsec sessions to an affected device. The vulnerability is due to improper handling of packets by the IPsec packet processor. An attacker could exploit this vulnerability by sending mali
nvd
CVE-2019-15998P4MEDIUMCVSS 5.3≥ unspecified, < n/a2019-11-26
CVE-2019-15998 [MEDIUM] CWE-284 CVE-2019-15998: A vulnerability in the access-control logic of the NETCONF over Secure Shell (SSH) of Cisco IOS XR S
A vulnerability in the access-control logic of the NETCONF over Secure Shell (SSH) of Cisco IOS XR Software may allow connections despite an access control list (ACL) that is configured to deny access to the NETCONF over SSH of an affected device. The vulnerability is due to a missing check in the NETCONF over SSH access control list (ACL). An attac
nvd
CVE-2024-20343P4MEDIUMCVSS 5.5v6.5.3v6.6.1+64 more2024-09-11
CVE-2024-20343 [MEDIUM] CWE-284 CVE-2024-20343: A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to
A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to read any file in the file system of the underlying Linux operating system. The attacker must have valid credentials on the affected device.
This vulnerability is due to incorrect validation of the arguments that are passed to a specific CLI command. A
nvd
CVE-2024-20390P4MEDIUMCVSS 5.3v6.5.3v6.5.29+84 more2024-09-11
CVE-2024-20390 [MEDIUM] CWE-940 CVE-2024-20390: A vulnerability in the Dedicated XML Agent feature of Cisco IOS XR Software could allow an unauthent
A vulnerability in the Dedicated XML Agent feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) on XML TCP listen port 38751.
This vulnerability is due to a lack of proper error validation of ingress XML packets. An attacker could exploit this vulnerability by sending a sustained, craft
nvd
CVE-2019-16018P4MEDIUMCVSS 6.5≥ unspecified, < n/a2020-01-26
CVE-2019-16018 [MEDIUM] CWE-399 CVE-2019-16018: A vulnerability in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functiona
A vulnerability in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to incorrect processing of a BGP update message that contains crafted EVPN attributes. An attacker cou
nvd
CVE-2020-3364P4MEDIUMCVSS 5.3vn/a2020-06-18
CVE-2020-3364 [MEDIUM] CWE-284 CVE-2020-3364: A vulnerability in the access control list (ACL) functionality of the standby route processor manage
A vulnerability in the access control list (ACL) functionality of the standby route processor management interface of Cisco IOS XR Software could allow an unauthenticated, remote attacker to reach the configured IP addresses on the standby route processor management Gigabit Ethernet Management interface. The vulnerability is due to a logic error that
nvd
CVE-2024-20489P4MEDIUMCVSS 5.5v24.1.1v24.2.1+3 more2024-09-11
CVE-2024-20489 [MEDIUM] CWE-256 CVE-2024-20489: A vulnerability in the storage method of the PON Controller configuration file could allow an authen
A vulnerability in the storage method of the PON Controller configuration file could allow an authenticated, local attacker with low privileges to obtain the MongoDB credentials.
This vulnerability is due to improper storage of the unencrypted database credentials on the device that is running Cisco IOS XR Software. An attacker could exploit this v
nvd
CVE-2024-20266P4MEDIUMCVSS 5.3v5.2.0v5.2.1+89 more2024-03-13
CVE-2024-20266 [MEDIUM] CWE-476 CVE-2024-20266: A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow a
A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to trigger a crash of the dhcpd process, resulting in a denial of service (DoS) condition.
This vulnerability exists because certain DHCPv4 messages are improperly validated when they are processed by an affected dev
nvd
CVE-2019-1849P4MEDIUMCVSS 6.5≥ unspecified, < n/a2019-05-16
CVE-2019-1849 [MEDIUM] CWE-754 CVE-2019-1849: A vulnerability in the Border Gateway Patrol (BGP) Multiprotocol Label Switching (MPLS)-based Ethern
A vulnerability in the Border Gateway Patrol (BGP) Multiprotocol Label Switching (MPLS)-based Ethernet VPN (EVPN) implementation of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to a logic error that occurs when the affected softwar
nvd
CVE-2024-20262P4MEDIUMCVSS 6.5v5.2.0v5.2.1+80 more2024-03-13
CVE-2024-20262 [MEDIUM] CWE-269 CVE-2024-20262: A vulnerability in the Secure Copy Protocol (SCP) and SFTP feature of Cisco IOS XR Software could al
A vulnerability in the Secure Copy Protocol (SCP) and SFTP feature of Cisco IOS XR Software could allow an authenticated, local attacker to create or overwrite files in a system directory, which could lead to a denial of service (DoS) condition. The attacker would require valid user credentials to perform this attack.
This vulnerability is due to a
nvd
CVE-2022-20849P4MEDIUMCVSS 6.1v6.5.3v6.6.1+31 more2024-11-15
CVE-2022-20849 [MEDIUM] CWE-391 CVE-2022-20849: A vulnerability in the Broadband Network Gateway PPP over Ethernet (PPPoE) feature of Cisco IOS
A vulnerability in the Broadband Network Gateway PPP over Ethernet (PPPoE) feature of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the PPPoE process to continually crash.
This vulnerability exists because the PPPoE feature does not properly handle an error condition within a specific crafted packet sequence. An at
nvd
CVE-2021-1268P4MEDIUMCVSS 6.5vn/a2021-02-04
CVE-2021-1268 [MEDIUM] CWE-1076 CVE-2021-1268: A vulnerability in the IPv6 protocol handling of the management interfaces of Cisco IOS XR Software
A vulnerability in the IPv6 protocol handling of the management interfaces of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause an IPv6 flood on the management interface network of an affected device. The vulnerability exists because the software incorrectly forwards IPv6 packets that have an IPv6 node-local multicast gr
nvd