Cisco iOS vulnerabilities

581 known vulnerabilities affecting cisco/ios.

Total CVEs
581
CISA KEV
36
actively exploited
Public exploits
28
Exploited in wild
36
Severity breakdown
CRITICAL32HIGH327MEDIUM211LOW11

Vulnerabilities

Page 13 of 30
CVE-2015-0649HIGHCVSS 7.8v12.2\(33\)ird1v12.2\(33\)ire3+43 more2015-03-26
CVE-2015-0649 [HIGH] CWE-20 CVE-2015-0649: Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3 allows remote attackers to cause a denial of service (dev Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3 allows remote attackers to cause a denial of service (device reload) via malformed Common Industrial Protocol (CIP) TCP packets, aka Bug ID CSCun63514.
nvd
CVE-2015-0642HIGHCVSS 7.8v12.2v12.4+5 more2015-03-26
CVE-2015-0642 [HIGH] CWE-20 CVE-2015-0642: Cisco IOS 12.2, 12.4, 15.0, 15.1, 15.2, 15.3, and 15.4 and IOS XE 2.5.x, 2.6.x, 3.1.xS through 3.12. Cisco IOS 12.2, 12.4, 15.0, 15.1, 15.2, 15.3, and 15.4 and IOS XE 2.5.x, 2.6.x, 3.1.xS through 3.12.xS before 3.12.3S, 3.2.xE through 3.7.xE before 3.7.1E, 3.3.xSG, 3.4.xSG, and 3.13.xS before 3.13.2S allow remote attackers to cause a denial of service (device reload) by sending malformed IKEv2 packets over (1) IPv4 or (2) IPv6, aka Bug ID CSCum36951.
nvd
CVE-2015-0648HIGHCVSS 7.8v12.2\(33\)ird1v12.2\(33\)ire3+59 more2015-03-26
CVE-2015-0648 [HIGH] CWE-399 CVE-2015-0648: Memory leak in Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3 allows remote attackers to cause a denial Memory leak in Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3 allows remote attackers to cause a denial of service (memory consumption) via crafted Common Industrial Protocol (CIP) TCP packets, aka Bug ID CSCun49658.
nvd
CVE-2015-0669MEDIUMCVSS 6.4v15.4\(3\)sv15.4s2015-03-21
CVE-2015-0669 [MEDIUM] CWE-20 CVE-2015-0669: The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 15.4S and 15.4(3)S allows The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 15.4S and 15.4(3)S allows remote attackers to modify configuration settings or cause a denial of service (partial service outage) by sending crafted Autonomic Networking (AN) messages on an intranet network, aka Bug ID CSCup62167.
nvd
CVE-2015-0607MEDIUMCVSS 4.3v15.4\(1\)tv15.4\(1\)t1+9 more2015-03-06
CVE-2015-0607 [MEDIUM] CWE-287 CVE-2015-0607: The Authentication Proxy feature in Cisco IOS does not properly handle invalid AAA return codes from The Authentication Proxy feature in Cisco IOS does not properly handle invalid AAA return codes from RADIUS and TACACS+ servers, which allows remote attackers to bypass authentication in opportunistic circumstances via a connection attempt that triggers an invalid code, as demonstrated by a connection attempt with a blank password, aka Bug IDs CSCuo09
nvd
CVE-2015-0609HIGHCVSS 7.1≤ 15.4\(2\)t3v15.4\(1\)t+8 more2015-02-16
CVE-2015-0609 [HIGH] CWE-362 CVE-2015-0609: Race condition in the Common Classification Engine (CCE) in the Measurement, Aggregation, and Correl Race condition in the Common Classification Engine (CCE) in the Measurement, Aggregation, and Correlation Engine (MACE) implementation in Cisco IOS 15.4(2)T3 and earlier allows remote attackers to cause a denial of service (device reload) via crafted network traffic that triggers improper handling of the timing of process switching and Cisco Express For
nvd
CVE-2015-0593HIGHCVSS 7.1v15.4\(1.12\)tv15.4\(1.19\)t2015-02-13
CVE-2015-0593 [HIGH] CWE-399 CVE-2015-0593: The Zone-Based Firewall implementation in Cisco IOS 12.4(122)T and earlier does not properly manage The Zone-Based Firewall implementation in Cisco IOS 12.4(122)T and earlier does not properly manage session-object structures, which allows remote attackers to cause a denial of service (device reload) via crafted network traffic, aka Bug ID CSCul65003.
nvd
CVE-2015-0608HIGHCVSS 7.1≤ 15.4\(2\)t3v15.4\(1\)t+8 more2015-02-12
CVE-2015-0608 [HIGH] CWE-362 CVE-2015-0608: Race condition in the Measurement, Aggregation, and Correlation Engine (MACE) implementation in Cisc Race condition in the Measurement, Aggregation, and Correlation Engine (MACE) implementation in Cisco IOS 15.4(2)T3 and earlier allows remote attackers to cause a denial of service (device reload) via crafted network traffic that triggers improper handling of the timing of process switching and Cisco Express Forwarding (CEF) switching, aka Bug ID CSCul4
nvd
CVE-2015-0592HIGHCVSS 7.8≤ 15.4\(2\)t3v15.4\(1\)t+8 more2015-02-12
CVE-2015-0592 [HIGH] CWE-399 CVE-2015-0592: The Zone-Based Firewall implementation in Cisco IOS 15.4(2)T3 and earlier allows remote attackers to The Zone-Based Firewall implementation in Cisco IOS 15.4(2)T3 and earlier allows remote attackers to cause a denial of service (device reload) via crafted network traffic that triggers incorrect kernel-timer handling, aka Bug ID CSCuh25672.
nvd
CVE-2015-0610MEDIUMCVSS 4.3≤ 15.5\(2\)tv15.5\(1\)t+2 more2015-02-12
CVE-2015-0610 [MEDIUM] CWE-362 CVE-2015-0610: Race condition in the object-group ACL feature in Cisco IOS 15.5(2)T and earlier allows remote attac Race condition in the object-group ACL feature in Cisco IOS 15.5(2)T and earlier allows remote attackers to bypass intended access restrictions via crafted network traffic that triggers improper handling of the timing of process switching and Cisco Express Forwarding (CEF) switching, aka Bug ID CSCun21071.
nvd
CVE-2015-0586HIGHCVSS 7.8≤ 15.3\(100\)m2015-01-28
CVE-2015-0586 [HIGH] CWE-399 CVE-2015-0586: The Network-Based Application Recognition (NBAR) protocol implementation in Cisco IOS 15.3(100)M and The Network-Based Application Recognition (NBAR) protocol implementation in Cisco IOS 15.3(100)M and earlier on Cisco 2900 Integrated Services Router (aka Cisco Internet Router) devices allows remote attackers to cause a denial of service (NBAR process hang) via IPv4 packets, aka Bug ID CSCuo73682.
nvd
CVE-2014-3293MEDIUMCVSS 5.0v15.4\(3\)s0b2014-10-28
CVE-2014-3293 [MEDIUM] CWE-399 CVE-2014-3293: Cisco IOS 15.4(3)S0b on ASR901 devices makes incorrect decisions to use the CPU for IPv4 packet proc Cisco IOS 15.4(3)S0b on ASR901 devices makes incorrect decisions to use the CPU for IPv4 packet processing, which allows remote attackers to cause a denial of service (BGP neighbor flapping) by sending many crafted IPv4 packets, aka Bug ID CSCuo29736.
nvd
CVE-2014-3409MEDIUMCVSS 6.1≤ 12.2\(33\)sre9a2014-10-25
CVE-2014-3409 [MEDIUM] CWE-399 CVE-2014-3409: The Ethernet Connectivity Fault Management (CFM) handling feature in Cisco IOS 12.2(33)SRE9a and ear The Ethernet Connectivity Fault Management (CFM) handling feature in Cisco IOS 12.2(33)SRE9a and earlier and IOS XE 3.13S and earlier allows remote attackers to cause a denial of service (device reload) via malformed CFM packets, aka Bug ID CSCuq93406.
nvd
CVE-2014-3358HIGHCVSS 7.8v15.0v15.1+2 more2014-09-25
CVE-2014-3358 [HIGH] CWE-78 CVE-2014-3358: Memory leak in Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO befor Memory leak in Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5.xE before 3.5.2E, and 3.11.xS before 3.11.1S allows remote attackers to cause a denial of service (memory consumption, and interface queue wedge or device reload) via malformed mDNS packets, aka Bug ID CSCuj58950.
nvd
CVE-2014-3359HIGHCVSS 7.8v15.1v15.2+2 more2014-09-25
CVE-2014-3359 [HIGH] CWE-399 CVE-2014-3359: Memory leak in Cisco IOS 15.1 through 15.4 and IOS XE 3.4.xS, 3.5.xS, 3.6.xS, and 3.7.xS before 3.7. Memory leak in Cisco IOS 15.1 through 15.4 and IOS XE 3.4.xS, 3.5.xS, 3.6.xS, and 3.7.xS before 3.7.6S; 3.8.xS, 3.9.xS, and 3.10.xS before 3.10.1S; and 3.11.xS before 3.12S allows remote attackers to cause a denial of service (memory consumption or device reload) via malformed DHCPv6 packets, aka Bug ID CSCum90081.
nvd
CVE-2014-3360HIGHCVSS 7.8v15.1v15.2+2 more2014-09-25
CVE-2014-3360 [HIGH] CWE-78 CVE-2014-3360: Cisco IOS 12.4 and 15.0 through 15.4 and IOS XE 3.1.xS, 3.2.xS, 3.3.xS, 3.4.xS, 3.5.xS, 3.6.xS, and Cisco IOS 12.4 and 15.0 through 15.4 and IOS XE 3.1.xS, 3.2.xS, 3.3.xS, 3.4.xS, 3.5.xS, 3.6.xS, and 3.7.xS before 3.7.6S; 3.8.xS, 3.9.xS, and 3.10.xS before 3.10.1S; and 3.11.xS before 3.12S allow remote attackers to cause a denial of service (device reload) via a crafted SIP message, aka Bug ID CSCul46586.
nvd
CVE-2014-3361HIGHCVSS 7.1v15.0v15.1+3 more2014-09-25
CVE-2014-3361 [HIGH] CWE-119 CVE-2014-3361: The ALG module in Cisco IOS 15.0 through 15.4 does not properly implement SIP over NAT, which allows The ALG module in Cisco IOS 15.0 through 15.4 does not properly implement SIP over NAT, which allows remote attackers to cause a denial of service (device reload) via multipart SDP IPv4 traffic, aka Bug ID CSCun54071.
nvd
CVE-2014-3354HIGHCVSS 7.8v12.0v12.2+5 more2014-09-25
CVE-2014-3354 [HIGH] CWE-20 CVE-2014-3354: Cisco IOS 12.0, 12.2, 12.4, 15.0, 15.1, 15.2, and 15.3 and IOS XE 2.x and 3.x before 3.7.4S; 3.2.xSE Cisco IOS 12.0, 12.2, 12.4, 15.0, 15.1, 15.2, and 15.3 and IOS XE 2.x and 3.x before 3.7.4S; 3.2.xSE and 3.3.xSE before 3.3.2SE; 3.3.xSG and 3.4.xSG before 3.4.4SG; and 3.8.xS, 3.9.xS, and 3.10.xS before 3.10.1S allow remote attackers to cause a denial of service (device reload) via malformed RSVP packets, aka Bug ID CSCui11547.
nvd
CVE-2014-3357HIGHCVSS 7.8v15.0v15.1+2 more2014-09-25
CVE-2014-3357 [HIGH] CWE-78 CVE-2014-3357: Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5. Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5.xE before 3.5.2E, and 3.11.xS before 3.11.1S allow remote attackers to cause a denial of service (device reload) via malformed mDNS packets, aka Bug ID CSCul90866.
nvd
CVE-2014-3347MEDIUMCVSS 5.4v15.1\(4\)m22014-08-28
CVE-2014-3347 [MEDIUM] CWE-399 CVE-2014-3347: Cisco IOS 15.1(4)M2 on Cisco 1800 ISR devices, when the ISDN Basic Rate Interface is enabled, allows Cisco IOS 15.1(4)M2 on Cisco 1800 ISR devices, when the ISDN Basic Rate Interface is enabled, allows remote attackers to cause a denial of service (device hang) by leveraging knowledge of the ISDN phone number to trigger an interrupt timer collision during entropy collection, leading to an invalid state of the hardware encryption module, aka Bug ID CS
nvd