cbcvebase.

Cisco iOS vulnerabilities

582 known vulnerabilities affecting cisco/ios.

Total CVEs
582
CISA KEV
37
actively exploited
Public exploits
28
Exploited in wild
41
Severity breakdown
CRITICAL31HIGH328MEDIUM212LOW11

Vulnerabilities

Page 14 of 30
CVE-2010-4686P4HIGHCVSS 7.8fixed in 15.0\(1\)xa12011-01-07
CVE-2010-4686 [HIGH] CWE-400 CVE-2010-4686: CallManager Express (CME) on Cisco IOS before 15.0(1)XA1 does not properly handle SIP TRUNK traffic CallManager Express (CME) on Cisco IOS before 15.0(1)XA1 does not properly handle SIP TRUNK traffic that contains rate bursts and a "peculiar" request size, which allows remote attackers to cause a denial of service (memory consumption) by sending this traffic over a long duration, aka Bug ID CSCtb47950.
nvd
CVE-2024-20414P3MEDIUMCVSS 6.5v15.2\(6\)e2v15.2\(6\)e2a+58 more2024-09-25
CVE-2024-20414 [MEDIUM] CWE-285 CVE-2024-20414: A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow an A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system through the web UI. This vulnerability is due to incorrectly accepting configuration changes through the HTTP GET method. An attacker could e
nvd
CVE-2010-0583P4HIGHCVSS 7.8v12.1xuv12.1yd+1 more2010-03-25
CVE-2010-0583 [HIGH] CWE-399 CVE-2010-0583: Memory leak in the H.323 implementation in Cisco IOS 12.1 through 12.4, and 15.0M before 15.0(1)M1, Memory leak in the H.323 implementation in Cisco IOS 12.1 through 12.4, and 15.0M before 15.0(1)M1, allows remote attackers to cause a denial of service (memory consumption and device reload) via malformed H.323 packets, aka Bug ID CSCtb93855.
nvd
CVE-2018-0131P3MEDIUMCVSS 5.9v15.5\(3\)s2018-08-14
CVE-2018-0131 [MEDIUM] CWE-326 CVE-2018-0131: A vulnerability in the implementation of RSA-encrypted nonces in Cisco IOS Software and Cisco IOS XE A vulnerability in the implementation of RSA-encrypted nonces in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to obtain the encrypted nonces of an Internet Key Exchange Version 1 (IKEv1) session. The vulnerability exists because the affected software responds incorrectly to decryption failures. An attack
nvd
CVE-2014-3357P4HIGHCVSS 7.8v15.0v15.1+2 more2014-09-25
CVE-2014-3357 [HIGH] CWE-78 CVE-2014-3357: Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5. Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5.xE before 3.5.2E, and 3.11.xS before 3.11.1S allow remote attackers to cause a denial of service (device reload) via malformed mDNS packets, aka Bug ID CSCul90866.
nvd
CVE-1999-0775P4CRITICALCVSS 10.0v11.2\(14\)gs2v11.2\(15\)g1999-06-10
CVE-1999-0775 [CRITICAL] CVE-1999-0775: Cisco Gigabit Switch routers running IOS allow remote attackers to forward unauthorized packets due Cisco Gigabit Switch routers running IOS allow remote attackers to forward unauthorized packets due to improper handling of the "established" keyword in an access list.
nvd
CVE-2011-3272P4HIGHCVSS 7.8v15.12011-10-03
CVE-2011-3272 [HIGH] CWE-399 CVE-2011-3272: The IP Service Level Agreement (IP SLA) functionality in Cisco IOS 15.1, and IOS XE 2.1.x through 3. The IP Service Level Agreement (IP SLA) functionality in Cisco IOS 15.1, and IOS XE 2.1.x through 3.3.x, allows remote attackers to cause a denial of service (memory corruption and device reload) via malformed IP SLA packets, aka Bug ID CSCtk67073.
nvd
CVE-2010-0586P4HIGHCVSS 7.8v12.1ydv12.1ye+91 more2010-03-25
CVE-2010-0586 [HIGH] CVE-2010-0586: Cisco IOS 12.1 through 12.4, when Cisco Unified Communications Manager Express (CME) or Cisco Unifie Cisco IOS 12.1 through 12.4, when Cisco Unified Communications Manager Express (CME) or Cisco Unified Survivable Remote Site Telephony (SRST) is enabled, allows remote attackers to cause a denial of service (device reload) via a malformed Skinny Client Control Protocol (SCCP) message, aka Bug ID CSCsz49741, the "SCCP Request Handling Denial of Service Vulnerabi
nvd
CVE-2009-2871P4HIGHCVSS 7.8v12.2xnav12.2xnb+15 more2009-09-28
CVE-2009-2871 [HIGH] CVE-2009-2871: Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when SSLVPN sessions, SSH sessions, or IKE enc Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when SSLVPN sessions, SSH sessions, or IKE encrypted nonces are enabled, allows remote attackers to cause a denial of service (device reload) via a crafted encrypted packet, aka Bug ID CSCsq24002.
nvd
CVE-2014-2106P4HIGHCVSS 7.8v15.3\(3\)mv15.3\(3\)m12014-03-27
CVE-2014-2106 [HIGH] CWE-20 CVE-2014-2106: Cisco IOS 15.3M before 15.3(3)M2 and IOS XE 3.10.xS before 3.10.2S allow remote attackers to cause a Cisco IOS 15.3M before 15.3(3)M2 and IOS XE 3.10.xS before 3.10.2S allow remote attackers to cause a denial of service (device reload) via crafted SIP messages, aka Bug ID CSCug45898.
nvd
CVE-2015-0648P4HIGHCVSS 7.8v12.2\(33\)ird1v12.2\(33\)ire3+59 more2015-03-26
CVE-2015-0648 [HIGH] CWE-399 CVE-2015-0648: Memory leak in Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3 allows remote attackers to cause a denial Memory leak in Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3 allows remote attackers to cause a denial of service (memory consumption) via crafted Common Industrial Protocol (CIP) TCP packets, aka Bug ID CSCun49658.
nvd
CVE-2012-1314P4HIGHCVSS 7.8v15.1v15.22012-03-29
CVE-2012-1314 [HIGH] CWE-399 CVE-2012-1314: The WAAS Express feature in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of ser The WAAS Express feature in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted transit traffic, aka Bug ID CSCtt45381.
nvd
CVE-2012-1315P4HIGHCVSS 7.8v12.4v15.0+2 more2012-03-29
CVE-2012-1315 [HIGH] CWE-399 CVE-2012-1315: Memory leak in the SIP inspection feature in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, Memory leak in the SIP inspection feature in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted transit SIP traffic, aka Bug ID CSCti46171.
nvd
CVE-2012-1311P3HIGHCVSS 7.8v15.0v15.12012-03-29
CVE-2012-1311 [HIGH] CWE-399 CVE-2012-1311: The RSVP feature in Cisco IOS 15.0 and 15.1 and IOS XE 3.2.xS through 3.4.xS before 3.4.2S, when a V The RSVP feature in Cisco IOS 15.0 and 15.1 and IOS XE 3.2.xS through 3.4.xS before 3.4.2S, when a VRF interface is configured, allows remote attackers to cause a denial of service (interface queue wedge and service outage) via crafted RSVP packets, aka Bug ID CSCts80643.
nvd
CVE-2014-2113P4HIGHCVSS 7.8v15.1v15.2+1 more2014-03-27
CVE-2014-2113 [HIGH] CWE-20 CVE-2014-2113: Cisco IOS 15.1 through 15.3 and IOS XE 3.3 and 3.5 before 3.5.2E; 3.7 before 3.7.5S; and 3.8, 3.9, a Cisco IOS 15.1 through 15.3 and IOS XE 3.3 and 3.5 before 3.5.2E; 3.7 before 3.7.5S; and 3.8, 3.9, and 3.10 before 3.10.2S allow remote attackers to cause a denial of service (I/O memory consumption and device reload) via a malformed IPv6 packet, aka Bug ID CSCui59540.
nvd
CVE-2009-0626P4HIGHCVSS 7.8v12.3v12.3b+75 more2009-03-27
CVE-2009-0626 [HIGH] CWE-399 CVE-2009-0626: The SSLVPN feature in Cisco IOS 12.3 through 12.4 allows remote attackers to cause a denial of servi The SSLVPN feature in Cisco IOS 12.3 through 12.4 allows remote attackers to cause a denial of service (device reload or hang) via a crafted HTTPS packet.
nvd
CVE-2013-5473P4HIGHCVSS 7.8v12.2v15.1+1 more2013-09-27
CVE-2013-5473 [HIGH] CWE-399 CVE-2013-5473: Memory leak in Cisco IOS 12.2, 15.1, and 15.2; IOS XE 3.4.2S through 3.4.5S; and IOS XE 3.6.xS befor Memory leak in Cisco IOS 12.2, 15.1, and 15.2; IOS XE 3.4.2S through 3.4.5S; and IOS XE 3.6.xS before 3.6.1S allows remote attackers to cause a denial of service (memory consumption or device reload) via malformed IKEv1 packets, aka Bug ID CSCtx66011.
nvd
CVE-2011-2064P3HIGHCVSS 7.8v12.4\(24\)md1v12.4\(24\)md2+4 more2011-07-11
CVE-2011-2064 [HIGH] CWE-399 CVE-2011-2064: Cisco IOS 12.4MDA before 12.4(24)MDA5 on the Cisco Content Services Gateway - Second Generation (CSG Cisco IOS 12.4MDA before 12.4(24)MDA5 on the Cisco Content Services Gateway - Second Generation (CSG2) allows remote attackers to cause a denial of service (device reload) via crafted ICMP packets, aka Bug ID CSCtl79577.
nvd
CVE-2013-5479P4HIGHCVSS 7.8v12.2v15.0+3 more2013-09-27
CVE-2013-5479 [HIGH] CWE-20 CVE-2013-5479: The DNS-over-TCP implementation in Cisco IOS 12.2 and 15.0 through 15.3, when NAT is used, allows re The DNS-over-TCP implementation in Cisco IOS 12.2 and 15.0 through 15.3, when NAT is used, allows remote attackers to cause a denial of service (device reload) via a crafted IPv4 DNS TCP stream, aka Bug ID CSCtn53730.
nvd
CVE-2013-5477P4HIGHCVSS 7.8v12.2v15.0+3 more2013-09-27
CVE-2013-5477 [HIGH] CWE-20 CVE-2013-5477: The T1/E1 driver-queue functionality in Cisco IOS 12.2 and 15.0 through 15.3, when an HDLC32 driver The T1/E1 driver-queue functionality in Cisco IOS 12.2 and 15.0 through 15.3, when an HDLC32 driver is used, allows remote attackers to cause a denial of service (interface queue wedge) via bursty network traffic, aka Bug ID CSCub67465.
nvd