Cisco Ios Xr Software vulnerabilities
114 known vulnerabilities affecting cisco/cisco_ios_xr_software.
Total CVEs
114
CISA KEV
4
actively exploited
Public exploits
0
Exploited in wild
5
Severity breakdown
CRITICAL5HIGH62MEDIUM47
Vulnerabilities
Page 6 of 6
CVE-2024-20390P4MEDIUMCVSS 5.3v6.5.3v6.5.29+84 more2024-09-11
CVE-2024-20390 [MEDIUM] CWE-940 CVE-2024-20390: A vulnerability in the Dedicated XML Agent feature of Cisco IOS XR Software could allow an unauthent
A vulnerability in the Dedicated XML Agent feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) on XML TCP listen port 38751.
This vulnerability is due to a lack of proper error validation of ingress XML packets. An attacker could exploit this vulnerability by sending a sustained, craft
nvd
CVE-2024-20489P4MEDIUMCVSS 5.5v24.1.1v24.2.1+3 more2024-09-11
CVE-2024-20489 [MEDIUM] CWE-256 CVE-2024-20489: A vulnerability in the storage method of the PON Controller configuration file could allow an authen
A vulnerability in the storage method of the PON Controller configuration file could allow an authenticated, local attacker with low privileges to obtain the MongoDB credentials.
This vulnerability is due to improper storage of the unencrypted database credentials on the device that is running Cisco IOS XR Software. An attacker could exploit this v
nvd
CVE-2024-20266P4MEDIUMCVSS 5.3v5.2.0v5.2.1+89 more2024-03-13
CVE-2024-20266 [MEDIUM] CWE-476 CVE-2024-20266: A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow a
A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to trigger a crash of the dhcpd process, resulting in a denial of service (DoS) condition.
This vulnerability exists because certain DHCPv4 messages are improperly validated when they are processed by an affected dev
nvd
CVE-2019-1849P4MEDIUMCVSS 6.5≥ unspecified, < n/a2019-05-16
CVE-2019-1849 [MEDIUM] CWE-754 CVE-2019-1849: A vulnerability in the Border Gateway Patrol (BGP) Multiprotocol Label Switching (MPLS)-based Ethern
A vulnerability in the Border Gateway Patrol (BGP) Multiprotocol Label Switching (MPLS)-based Ethernet VPN (EVPN) implementation of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to a logic error that occurs when the affected softwar
nvd
CVE-2022-20849P4MEDIUMCVSS 6.1v6.5.3v6.6.1+31 more2024-11-15
CVE-2022-20849 [MEDIUM] CWE-391 CVE-2022-20849: A vulnerability in the Broadband Network Gateway PPP over Ethernet (PPPoE) feature of Cisco IOS
A vulnerability in the Broadband Network Gateway PPP over Ethernet (PPPoE) feature of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the PPPoE process to continually crash.
This vulnerability exists because the PPPoE feature does not properly handle an error condition within a specific crafted packet sequence. An at
nvd
CVE-2021-1268P4MEDIUMCVSS 6.5vn/a2021-02-04
CVE-2021-1268 [MEDIUM] CWE-1076 CVE-2021-1268: A vulnerability in the IPv6 protocol handling of the management interfaces of Cisco IOS XR Software
A vulnerability in the IPv6 protocol handling of the management interfaces of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause an IPv6 flood on the management interface network of an affected device. The vulnerability exists because the software incorrectly forwards IPv6 packets that have an IPv6 node-local multicast gr
nvd
CVE-2024-20262P4MEDIUMCVSS 6.5v5.2.0v5.2.1+80 more2024-03-13
CVE-2024-20262 [MEDIUM] CWE-269 CVE-2024-20262: A vulnerability in the Secure Copy Protocol (SCP) and SFTP feature of Cisco IOS XR Software could al
A vulnerability in the Secure Copy Protocol (SCP) and SFTP feature of Cisco IOS XR Software could allow an authenticated, local attacker to create or overwrite files in a system directory, which could lead to a denial of service (DoS) condition. The attacker would require valid user credentials to perform this attack.
This vulnerability is due to a
nvd
CVE-2021-34771P4MEDIUMCVSS 5.5vn/a2021-09-09
CVE-2021-34771 [MEDIUM] CWE-201 CVE-2021-34771: A vulnerability in the Cisco IOS XR Software CLI could allow an authenticated, local attacker to vie
A vulnerability in the Cisco IOS XR Software CLI could allow an authenticated, local attacker to view more information than their privileges allow. This vulnerability is due to insufficient application of restrictions during the execution of a specific command. An attacker could exploit this vulnerability by running a specific command. A successful
nvd
CVE-2022-20846P4MEDIUMCVSS 4.3v6.5.3v6.5.29+58 more2024-11-15
CVE-2022-20846 [MEDIUM] CWE-120 CVE-2022-20846: A vulnerability in the Cisco Discovery Protocol implementation for Cisco IOS XR Software c
A vulnerability in the Cisco Discovery Protocol implementation for Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the Cisco Discovery Protocol process to reload on an affected device.
This vulnerability is due to a heap buffer overflow in certain Cisco Discovery Protocol messages. An attacker could exploit this vuln
nvd
CVE-2021-1128P4MEDIUMCVSS 5.5vn/a2021-02-04
CVE-2021-1128 [MEDIUM] CWE-201 CVE-2021-1128: A vulnerability in the CLI parser of Cisco IOS XR Software could allow an authenticated, local attac
A vulnerability in the CLI parser of Cisco IOS XR Software could allow an authenticated, local attacker to view more information than their privileges allow. The vulnerability is due to insufficient application of restrictions during the execution of a specific command. An attacker could exploit this vulnerability by using a specific command at the co
nvd
CVE-2024-20319P4MEDIUMCVSS 4.3v5.2.0v5.2.1+91 more2024-03-13
CVE-2024-20319 [MEDIUM] CWE-284 CVE-2024-20319: A vulnerability in the UDP forwarding code of Cisco IOS XR Software could allow an unauthenticated,
A vulnerability in the UDP forwarding code of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to bypass configured management plane protection policies and access the Simple Network Management Plane (SNMP) server of an affected device.
This vulnerability is due to incorrect UDP forwarding programming when using SNMP with manag
nvd
CVE-2023-20064P4MEDIUMCVSS 4.6vn/a2023-03-09
CVE-2023-20064 [MEDIUM] CWE-862 CVE-2023-20064: A vulnerability in the GRand Unified Bootloader (GRUB) for Cisco IOS XR Software could allow an unau
A vulnerability in the GRand Unified Bootloader (GRUB) for Cisco IOS XR Software could allow an unauthenticated attacker with physical access to the device to view sensitive files on the console using the GRUB bootloader command line. This vulnerability is due to the inclusion of unnecessary commands within the GRUB environment that allow sensitive
nvd
CVE-2022-20845P4MEDIUMCVSS 6.0v6.5.29v6.5.26+4 more2024-11-15
CVE-2022-20845 [MEDIUM] CWE-789 CVE-2022-20845: A vulnerability in the TL1 function of Cisco Network Convergence System (NCS) 4000 Series could
A vulnerability in the TL1 function of Cisco Network Convergence System (NCS) 4000 Series could allow an authenticated, local attacker to cause a memory leak in the TL1 process.
This vulnerability is due to TL1 not freeing memory under some conditions. An attacker could exploit this vulnerability by connecting to the device and issuing TL1 commands
nvd
CVE-2020-3449P4MEDIUMCVSS 4.3vn/a2020-08-17
CVE-2020-3449 [MEDIUM] CWE-754 CVE-2020-3449: A vulnerability in the Border Gateway Protocol (BGP) additional paths feature of Cisco IOS XR Softwa
A vulnerability in the Border Gateway Protocol (BGP) additional paths feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to prevent authorized users from monitoring the BGP status and cause the BGP process to stop processing new updates, resulting in a denial of service (DOS) condition. The vulnerability is due to an inco
nvd
← Previous6 / 6