cbcvebase.

Cisco iOS vulnerabilities

581 known vulnerabilities affecting cisco/ios.

Total CVEs
581
CISA KEV
37
actively exploited
Public exploits
28
Exploited in wild
41
Severity breakdown
CRITICAL31HIGH327MEDIUM212LOW11

Vulnerabilities

Page 19 of 30
CVE-2009-2872P4MEDIUMCVSS 6.8v12.0v12.0da+286 more2009-09-28
CVE-2009-2872 [MEDIUM] CVE-2009-2872: Cisco IOS 12.0 through 12.4, when IP-based tunnels and the Cisco Express Forwarding feature are enab Cisco IOS 12.0 through 12.4, when IP-based tunnels and the Cisco Express Forwarding feature are enabled, allows remote attackers to cause a denial of service (device reload) via a malformed packet that is not properly handled during switching from one tunnel to a second tunnel, aka Bug IDs CSCsh97579 and CSCsq31776.
nvd
CVE-2015-0609P4HIGHCVSS 7.1≤ 15.4\(2\)t3v15.4\(1\)t+8 more2015-02-16
CVE-2015-0609 [HIGH] CWE-362 CVE-2015-0609: Race condition in the Common Classification Engine (CCE) in the Measurement, Aggregation, and Correl Race condition in the Common Classification Engine (CCE) in the Measurement, Aggregation, and Correlation Engine (MACE) implementation in Cisco IOS 15.4(2)T3 and earlier allows remote attackers to cause a denial of service (device reload) via crafted network traffic that triggers improper handling of the timing of process switching and Cisco Express For
nvd
CVE-2015-0669P4MEDIUMCVSS 6.4v15.4\(3\)sv15.4s2015-03-21
CVE-2015-0669 [MEDIUM] CWE-20 CVE-2015-0669: The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 15.4S and 15.4(3)S allows The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 15.4S and 15.4(3)S allows remote attackers to modify configuration settings or cause a denial of service (partial service outage) by sending crafted Autonomic Networking (AN) messages on an intranet network, aka Bug ID CSCup62167.
nvd
CVE-2004-0054P4HIGHCVSS 7.5v11.3tv12.0+8 more2004-02-17
CVE-2004-0054 [HIGH] CVE-2004-0054: Multiple vulnerabilities in the H.323 protocol implementation for Cisco IOS 11.3T through 12.2T allo Multiple vulnerabilities in the H.323 protocol implementation for Cisco IOS 11.3T through 12.2T allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.
nvd
CVE-2020-3208P4MEDIUMCVSS 6.7v12.2\(60\)ez16v15.0\(2\)sg11a+55 more2020-06-03
CVE-2020-3208 [MEDIUM] CWE-264 CVE-2020-3208: A vulnerability in the image verification feature of Cisco IOS Software for Cisco 809 and 829 Indust A vulnerability in the image verification feature of Cisco IOS Software for Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) could allow an authenticated, local attacker to boot a malicious software image on an affected device. The vulnerability is due to insufficient access restrictions on the area of code that manages the i
nvd
CVE-2021-1391P4MEDIUMCVSS 6.7v12.2\(6\)i1v15.0\(2\)se13a+42 more2021-03-24
CVE-2021-1391 [MEDIUM] CWE-489 CVE-2021-1391: A vulnerability in the dragonite debugger of Cisco IOS XE Software could allow an authenticated, loc A vulnerability in the dragonite debugger of Cisco IOS XE Software could allow an authenticated, local attacker to escalate from privilege level 15 to root privilege. The vulnerability is due to the presence of development testing and verification scripts that remained on the device. An attacker could exploit this vulnerability by bypassing the consen
nvd
CVE-2019-12649P4MEDIUMCVSS 6.7v16.9.12019-09-25
CVE-2019-12649 [MEDIUM] CWE-347 CVE-2019-12649: A vulnerability in the Image Verification feature of Cisco IOS XE Software could allow an authentica A vulnerability in the Image Verification feature of Cisco IOS XE Software could allow an authenticated, local attacker to install and boot a malicious software image or execute unsigned binaries on an affected device. The vulnerability exists because, under certain circumstances, an affected device can be configured to not verify the digital signat
nvd
CVE-2008-3799P4HIGHCVSS 7.8v12.2v12.3+1 more2008-09-26
CVE-2008-3799 [HIGH] CWE-772 CVE-2008-3799: Memory leak in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4, Memory leak in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4, when VoIP is configured, allows remote attackers to cause a denial of service (memory consumption and voice-service outage) via unspecified valid SIP messages.
nvd
CVE-2021-1377P4MEDIUMCVSS 5.8v12.2\(6\)i1v15.1\(3\)svr1+132 more2021-03-24
CVE-2021-1377 [MEDIUM] CWE-399 CVE-2021-1377: A vulnerability in Address Resolution Protocol (ARP) management of Cisco IOS Software and Cisco IOS A vulnerability in Address Resolution Protocol (ARP) management of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to prevent an affected device from resolving ARP entries for legitimate hosts on the connected subnets. This vulnerability exists because ARP entries are mismanaged. An attacker could exploit th
nvd
CVE-2020-3476P4MEDIUMCVSS 6.0v16.9v16.10.12020-09-24
CVE-2020-3476 [MEDIUM] CWE-552 CVE-2020-3476: A vulnerability in the CLI implementation of a specific command of Cisco IOS XE Software could allow A vulnerability in the CLI implementation of a specific command of Cisco IOS XE Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying host file system. The vulnerability is due to insufficient validation of the parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing t
nvd
CVE-2008-3800P4HIGHCVSS 7.1v12.2v12.3+1 more2008-09-26
CVE-2008-3800 [HIGH] CVE-2008-3800: Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4 and Unified Communications Manager 4.1 through 6.1, when VoIP is configured, allows remote attackers to cause a denial of service (device or process reload) via unspecified valid SIP messages, aka Cisco Bug ID CSCsu38644, a different vulnerability tha
nvd
CVE-2008-3801P4HIGHCVSS 7.1v12.2v12.3+1 more2008-09-26
CVE-2008-3801 [HIGH] CVE-2008-3801: Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4 and Unified Communications Manager 4.1 through 6.1, when VoIP is configured, allows remote attackers to cause a denial of service (device or process reload) via unspecified valid SIP messages, aka Cisco Bug ID CSCsm46064, a different vulnerability tha
nvd
CVE-2008-3809P4HIGHCVSS 7.1v12.0v12.0da+202 more2008-09-26
CVE-2008-3809 [HIGH] CVE-2008-3809: Cisco IOS 12.0 through 12.4 on Gigabit Switch Router (GSR) devices (aka 12000 Series routers) allows Cisco IOS 12.0 through 12.4 on Gigabit Switch Router (GSR) devices (aka 12000 Series routers) allows remote attackers to cause a denial of service (device crash) via a malformed Protocol Independent Multicast (PIM) packet.
nvd
CVE-1999-1175P4HIGHCVSS 7.5≤ 11.21999-12-31
CVE-1999-1175 [HIGH] CVE-1999-1175: Web Cache Control Protocol (WCCP) in Cisco Cache Engine for Cisco IOS 11.2 and earlier does not use Web Cache Control Protocol (WCCP) in Cisco Cache Engine for Cisco IOS 11.2 and earlier does not use authentication, which allows remote attackers to redirect HTTP traffic to arbitrary hosts via WCCP packets to UDP port 2048.
nvd
CVE-1999-1465P4HIGHCVSS 7.5≤ 11.31999-12-31
CVE-1999-1465 [HIGH] CVE-1999-1465: Vulnerability in Cisco IOS 11.1 through 11.3 with distributed fast switching (DFS) enabled allows re Vulnerability in Cisco IOS 11.1 through 11.3 with distributed fast switching (DFS) enabled allows remote attackers to bypass certain access control lists when the router switches traffic from a DFS-enabled input interface to an output interface with a logical subinterface, as described by Cisco bug CSCdk43862.
nvd
CVE-1999-1464P4HIGHCVSS 7.5v11.1ccv11.1ct1999-12-31
CVE-1999-1464 [HIGH] CVE-1999-1464: Vulnerability in Cisco IOS 11.1CC and 11.1CT with distributed fast switching (DFS) enabled allows re Vulnerability in Cisco IOS 11.1CC and 11.1CT with distributed fast switching (DFS) enabled allows remote attackers to bypass certain access control lists when the router switches traffic from a DFS-enabled interface to an interface that does not have DFS enabled, as described by Cisco bug CSCdk35564.
nvd
CVE-2014-3361P4HIGHCVSS 7.1v15.0v15.1+3 more2014-09-25
CVE-2014-3361 [HIGH] CWE-119 CVE-2014-3361: The ALG module in Cisco IOS 15.0 through 15.4 does not properly implement SIP over NAT, which allows The ALG module in Cisco IOS 15.0 through 15.4 does not properly implement SIP over NAT, which allows remote attackers to cause a denial of service (device reload) via multipart SDP IPv4 traffic, aka Bug ID CSCun54071.
nvd
CVE-2015-4199P4HIGHCVSS 7.1v15.3s2015-06-27
CVE-2015-4199 [HIGH] CWE-362 CVE-2015-4199: Race condition in the IPv6-to-IPv4 functionality in Cisco IOS 15.3S in the Performance Routing Engin Race condition in the IPv6-to-IPv4 functionality in Cisco IOS 15.3S in the Performance Routing Engine (PRE) module on UBR devices allows remote attackers to cause a denial of service (NULL pointer free and module crash) by triggering intermittent connectivity with many IPv6 CPE devices, aka Bug ID CSCug47366.
nvd
CVE-2009-2873P4HIGHCVSS 7.1v12.0v12.0da+302 more2009-09-28
CVE-2009-2873 [HIGH] CVE-2009-2873: Cisco IOS 12.0 through 12.4, when IP-based tunnels and the Cisco Express Forwarding feature are enab Cisco IOS 12.0 through 12.4, when IP-based tunnels and the Cisco Express Forwarding feature are enabled, allows remote attackers to cause a denial of service (device reload) via malformed packets, aka Bug ID CSCsx70889.
nvd
CVE-2014-2111P4HIGHCVSS 7.1v12.2v12.3+6 more2014-03-27
CVE-2014-2111 [HIGH] CWE-20 CVE-2014-2111: The Application Layer Gateway (ALG) module in Cisco IOS 12.2 through 12.4 and 15.0 through 15.4, whe The Application Layer Gateway (ALG) module in Cisco IOS 12.2 through 12.4 and 15.0 through 15.4, when NAT is used, allows remote attackers to cause a denial of service (device reload) via crafted DNS packets, aka Bug ID CSCue00996.
nvd
Cisco iOS vulnerabilities | cvebase