Cisco iOS vulnerabilities
581 known vulnerabilities affecting cisco/ios.
Total CVEs
581
CISA KEV
37
actively exploited
Public exploits
28
Exploited in wild
41
Severity breakdown
CRITICAL31HIGH327MEDIUM212LOW11
Vulnerabilities
Page 14 of 30
CVE-2015-4200P4HIGHCVSS 7.8v15.3\(3\)sv15.3s2015-06-23
CVE-2015-4200 [HIGH] CWE-399 CVE-2015-4200: Memory leak in the IPv6-to-IPv4 functionality in Cisco IOS 15.3S in the Performance Routing Engine (
Memory leak in the IPv6-to-IPv4 functionality in Cisco IOS 15.3S in the Performance Routing Engine (PRE) module on UBR devices allows remote attackers to cause a denial of service (memory consumption) by triggering an error during CPE negotiation, aka Bug ID CSCug00885.
nvd
CVE-2010-4686P4HIGHCVSS 7.8fixed in 15.0\(1\)xa12011-01-07
CVE-2010-4686 [HIGH] CWE-400 CVE-2010-4686: CallManager Express (CME) on Cisco IOS before 15.0(1)XA1 does not properly handle SIP TRUNK traffic
CallManager Express (CME) on Cisco IOS before 15.0(1)XA1 does not properly handle SIP TRUNK traffic that contains rate bursts and a "peculiar" request size, which allows remote attackers to cause a denial of service (memory consumption) by sending this traffic over a long duration, aka Bug ID CSCtb47950.
nvd
CVE-2024-20414P3MEDIUMCVSS 6.5v15.2\(6\)e2v15.2\(6\)e2a+58 more2024-09-25
CVE-2024-20414 [MEDIUM] CWE-285 CVE-2024-20414: A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow an
A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system through the web UI.
This vulnerability is due to incorrectly accepting configuration changes through the HTTP GET method. An attacker could e
nvd
CVE-2010-0583P4HIGHCVSS 7.8v12.1xuv12.1yd+1 more2010-03-25
CVE-2010-0583 [HIGH] CWE-399 CVE-2010-0583: Memory leak in the H.323 implementation in Cisco IOS 12.1 through 12.4, and 15.0M before 15.0(1)M1,
Memory leak in the H.323 implementation in Cisco IOS 12.1 through 12.4, and 15.0M before 15.0(1)M1, allows remote attackers to cause a denial of service (memory consumption and device reload) via malformed H.323 packets, aka Bug ID CSCtb93855.
nvd
CVE-2018-0131P3MEDIUMCVSS 5.9v15.5\(3\)s2018-08-14
CVE-2018-0131 [MEDIUM] CWE-326 CVE-2018-0131: A vulnerability in the implementation of RSA-encrypted nonces in Cisco IOS Software and Cisco IOS XE
A vulnerability in the implementation of RSA-encrypted nonces in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to obtain the encrypted nonces of an Internet Key Exchange Version 1 (IKEv1) session. The vulnerability exists because the affected software responds incorrectly to decryption failures. An attack
nvd
CVE-2014-3357P4HIGHCVSS 7.8v15.0v15.1+2 more2014-09-25
CVE-2014-3357 [HIGH] CWE-78 CVE-2014-3357: Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5.
Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5.xE before 3.5.2E, and 3.11.xS before 3.11.1S allow remote attackers to cause a denial of service (device reload) via malformed mDNS packets, aka Bug ID CSCul90866.
nvd
CVE-2012-1310P4HIGHCVSS 7.8v12.4v15.0+2 more2012-03-29
CVE-2012-1310 [HIGH] CWE-399 CVE-2012-1310: Memory leak in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, and 15.2 allows remote attacke
Memory leak in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted IP packets, aka Bug ID CSCto89536.
nvd
CVE-1999-0775P4CRITICALCVSS 10.0v11.2\(14\)gs2v11.2\(15\)g1999-06-10
CVE-1999-0775 [CRITICAL] CVE-1999-0775: Cisco Gigabit Switch routers running IOS allow remote attackers to forward unauthorized packets due
Cisco Gigabit Switch routers running IOS allow remote attackers to forward unauthorized packets due to improper handling of the "established" keyword in an access list.
nvd
CVE-2011-3272P4HIGHCVSS 7.8v15.12011-10-03
CVE-2011-3272 [HIGH] CWE-399 CVE-2011-3272: The IP Service Level Agreement (IP SLA) functionality in Cisco IOS 15.1, and IOS XE 2.1.x through 3.
The IP Service Level Agreement (IP SLA) functionality in Cisco IOS 15.1, and IOS XE 2.1.x through 3.3.x, allows remote attackers to cause a denial of service (memory corruption and device reload) via malformed IP SLA packets, aka Bug ID CSCtk67073.
nvd
CVE-2010-0586P4HIGHCVSS 7.8v12.1ydv12.1ye+91 more2010-03-25
CVE-2010-0586 [HIGH] CVE-2010-0586: Cisco IOS 12.1 through 12.4, when Cisco Unified Communications Manager Express (CME) or Cisco Unifie
Cisco IOS 12.1 through 12.4, when Cisco Unified Communications Manager Express (CME) or Cisco Unified Survivable Remote Site Telephony (SRST) is enabled, allows remote attackers to cause a denial of service (device reload) via a malformed Skinny Client Control Protocol (SCCP) message, aka Bug ID CSCsz49741, the "SCCP Request Handling Denial of Service Vulnerabi
nvd
CVE-2009-2871P4HIGHCVSS 7.8v12.2xnav12.2xnb+15 more2009-09-28
CVE-2009-2871 [HIGH] CVE-2009-2871: Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when SSLVPN sessions, SSH sessions, or IKE enc
Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when SSLVPN sessions, SSH sessions, or IKE encrypted nonces are enabled, allows remote attackers to cause a denial of service (device reload) via a crafted encrypted packet, aka Bug ID CSCsq24002.
nvd
CVE-2014-2106P4HIGHCVSS 7.8v15.3\(3\)mv15.3\(3\)m12014-03-27
CVE-2014-2106 [HIGH] CWE-20 CVE-2014-2106: Cisco IOS 15.3M before 15.3(3)M2 and IOS XE 3.10.xS before 3.10.2S allow remote attackers to cause a
Cisco IOS 15.3M before 15.3(3)M2 and IOS XE 3.10.xS before 3.10.2S allow remote attackers to cause a denial of service (device reload) via crafted SIP messages, aka Bug ID CSCug45898.
nvd
CVE-2015-0648P4HIGHCVSS 7.8v12.2\(33\)ird1v12.2\(33\)ire3+59 more2015-03-26
CVE-2015-0648 [HIGH] CWE-399 CVE-2015-0648: Memory leak in Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3 allows remote attackers to cause a denial
Memory leak in Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3 allows remote attackers to cause a denial of service (memory consumption) via crafted Common Industrial Protocol (CIP) TCP packets, aka Bug ID CSCun49658.
nvd
CVE-2012-1314P4HIGHCVSS 7.8v15.1v15.22012-03-29
CVE-2012-1314 [HIGH] CWE-399 CVE-2012-1314: The WAAS Express feature in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of ser
The WAAS Express feature in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted transit traffic, aka Bug ID CSCtt45381.
nvd
CVE-2012-0383P4HIGHCVSS 7.8v12.4v15.0+1 more2012-03-29
CVE-2012-0383 [HIGH] CWE-399 CVE-2012-0383: Memory leak in the NAT feature in Cisco IOS 12.4, 15.0, and 15.1 allows remote attackers to cause a
Memory leak in the NAT feature in Cisco IOS 12.4, 15.0, and 15.1 allows remote attackers to cause a denial of service (memory consumption, and device hang or reload) via SIP packets that require translation, related to a "memory starvation vulnerability," aka Bug ID CSCti35326.
nvd
CVE-2012-1315P4HIGHCVSS 7.8v12.4v15.0+2 more2012-03-29
CVE-2012-1315 [HIGH] CWE-399 CVE-2012-1315: Memory leak in the SIP inspection feature in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1,
Memory leak in the SIP inspection feature in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted transit SIP traffic, aka Bug ID CSCti46171.
nvd
CVE-2012-1311P3HIGHCVSS 7.8v15.0v15.12012-03-29
CVE-2012-1311 [HIGH] CWE-399 CVE-2012-1311: The RSVP feature in Cisco IOS 15.0 and 15.1 and IOS XE 3.2.xS through 3.4.xS before 3.4.2S, when a V
The RSVP feature in Cisco IOS 15.0 and 15.1 and IOS XE 3.2.xS through 3.4.xS before 3.4.2S, when a VRF interface is configured, allows remote attackers to cause a denial of service (interface queue wedge and service outage) via crafted RSVP packets, aka Bug ID CSCts80643.
nvd
CVE-2014-2113P4HIGHCVSS 7.8v15.1v15.2+1 more2014-03-27
CVE-2014-2113 [HIGH] CWE-20 CVE-2014-2113: Cisco IOS 15.1 through 15.3 and IOS XE 3.3 and 3.5 before 3.5.2E; 3.7 before 3.7.5S; and 3.8, 3.9, a
Cisco IOS 15.1 through 15.3 and IOS XE 3.3 and 3.5 before 3.5.2E; 3.7 before 3.7.5S; and 3.8, 3.9, and 3.10 before 3.10.2S allow remote attackers to cause a denial of service (I/O memory consumption and device reload) via a malformed IPv6 packet, aka Bug ID CSCui59540.
nvd
CVE-2009-0626P4HIGHCVSS 7.8v12.3v12.3b+75 more2009-03-27
CVE-2009-0626 [HIGH] CWE-399 CVE-2009-0626: The SSLVPN feature in Cisco IOS 12.3 through 12.4 allows remote attackers to cause a denial of servi
The SSLVPN feature in Cisco IOS 12.3 through 12.4 allows remote attackers to cause a denial of service (device reload or hang) via a crafted HTTPS packet.
nvd
CVE-2013-5473P4HIGHCVSS 7.8v12.2v15.1+1 more2013-09-27
CVE-2013-5473 [HIGH] CWE-399 CVE-2013-5473: Memory leak in Cisco IOS 12.2, 15.1, and 15.2; IOS XE 3.4.2S through 3.4.5S; and IOS XE 3.6.xS befor
Memory leak in Cisco IOS 12.2, 15.1, and 15.2; IOS XE 3.4.2S through 3.4.5S; and IOS XE 3.6.xS before 3.6.1S allows remote attackers to cause a denial of service (memory consumption or device reload) via malformed IKEv1 packets, aka Bug ID CSCtx66011.
nvd