cbcvebase.

Cisco iOS vulnerabilities

581 known vulnerabilities affecting cisco/ios.

Total CVEs
581
CISA KEV
37
actively exploited
Public exploits
28
Exploited in wild
41
Severity breakdown
CRITICAL31HIGH327MEDIUM212LOW11

Vulnerabilities

Page 4 of 30
CVE-2002-2315P4HIGHCVSS 7.8PoCv11.0v11.1+2 more2002-12-31
CVE-2002-2315 [HIGH] CVE-2002-2315: Cisco IOS 11.2.x and 12.0.x does not limit the size of its redirect table, which allows remote attac Cisco IOS 11.2.x and 12.0.x does not limit the size of its redirect table, which allows remote attackers to cause a denial of service (memory consumption) via spoofed ICMP redirect packets to the router.
nvd
CVE-2000-0380P4HIGHCVSS 7.1PoCv11.1v11.2+37 more2000-04-26
CVE-2000-0380 [HIGH] CWE-20 CVE-2000-0380: The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attac The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string.
nvd
CVE-2025-20164P3HIGHCVSS 8.3v15.0(2)SE8v15.0(2)EA+73 more2025-05-07
CVE-2025-20164 [HIGH] CWE-862 CVE-2025-20164: A vulnerability in the Cisco Industrial Ethernet Switch Device Manager (DM) of Cisco IOS Software co A vulnerability in the Cisco Industrial Ethernet Switch Device Manager (DM) of Cisco IOS Software could allow an authenticated, remote attacker to elevate privileges. This vulnerability is due to insufficient validation of authorizations for authenticated users. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affec
nvd
CVE-2010-0581P3CRITICALCVSS 10.0v12.3jkv12.3t+42 more2010-03-25
CVE-2010-0581 [CRITICAL] CVE-2010-0581: Unspecified vulnerability in the SIP implementation in Cisco IOS 12.3 and 12.4 allows remote attacke Unspecified vulnerability in the SIP implementation in Cisco IOS 12.3 and 12.4 allows remote attackers to execute arbitrary code via a malformed SIP message, aka Bug ID CSCsz89904, the "SIP Packet Parsing Arbitrary Code Execution Vulnerability."
nvd
CVE-2011-3271P3CRITICALCVSS 10.0v12.2v15.12011-10-03
CVE-2011-3271 [CRITICAL] CVE-2011-3271: Unspecified vulnerability in the Smart Install functionality in Cisco IOS 12.2 and 15.1 allows remot Unspecified vulnerability in the Smart Install functionality in Cisco IOS 12.2 and 15.1 allows remote attackers to execute arbitrary code or cause a denial of service (device crash) via crafted TCP packets to port 4786, aka Bug ID CSCto10165.
nvd
CVE-2025-20239P3HIGHCVSS 8.6v15.2(4)Ev15.2(4)E1+236 more2025-08-14
CVE-2025-20239 [HIGH] CWE-401 CVE-2025-20239: A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Firewall Adaptive Security Appliance (ASA) Software, and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a denial of service (DoS) condition. This vul
nvd
CVE-2026-20012P3HIGHCVSS 8.6v15.2(1)Sv15.2(2)S+551 more2026-03-25
CVE-2026-20012 [HIGH] CWE-401 CVE-2026-20012: A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE Software, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a denial of service (DoS) co
nvd
CVE-2020-3217P3HIGHCVSS 8.8v12.2\(6\)i1v12.4\(25e\)jao7+268 more2020-06-03
CVE-2020-3217 [HIGH] CWE-20 CVE-2020-3217: A vulnerability in the Topology Discovery Service of Cisco One Platform Kit (onePK) in Cisco IOS Sof A vulnerability in the Topology Discovery Service of Cisco One Platform Kit (onePK) in Cisco IOS Software, Cisco IOS XE Software, Cisco IOS XR Software, and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to execute arbitrary code or cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insuff
nvd
CVE-2020-3205P3HIGHCVSS 8.8v12.2\(60\)ez16v15.0\(2\)sg11a+89 more2020-06-03
CVE-2020-3205 [HIGH] CWE-20 CVE-2020-3205: A vulnerability in the implementation of the inter-VM channel of Cisco IOS Software for Cisco 809 an A vulnerability in the implementation of the inter-VM channel of Cisco IOS Software for Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) could allow an unauthenticated, adjacent attacker to execute arbitrary shell commands on the Virtual Device Server (VDS) of an affected de
nvd
CVE-2019-1756P3HIGHCVSS 7.2v11.0\(20.3\)v16.9\(1\)2019-03-28
CVE-2019-1756 [HIGH] CWE-20 CVE-2019-1756: A vulnerability in Cisco IOS XE Software could allow an authenticated, remote attacker to execute co A vulnerability in Cisco IOS XE Software could allow an authenticated, remote attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vulnerability occurs because the affected software improperly sanitizes user-supplied input. An attacker who has valid administrator access to an affected device could exp
nvd
CVE-2010-0580P3CRITICALCVSS 10.0v12.3jkv12.3t+41 more2010-03-25
CVE-2010-0580 [CRITICAL] CVE-2010-0580: Unspecified vulnerability in the SIP implementation in Cisco IOS 12.3 and 12.4 allows remote attacke Unspecified vulnerability in the SIP implementation in Cisco IOS 12.3 and 12.4 allows remote attackers to execute arbitrary code via a malformed SIP message, aka Bug ID CSCsz48680, the "SIP Message Processing Arbitrary Code Execution Vulnerability."
nvd
CVE-2010-1574P3CRITICALCVSS 10.0v12.2\(52\)sev12.2\(52\)se12010-07-08
CVE-2010-1574 [CRITICAL] CWE-264 CVE-2010-1574: IOS 12.2(52)SE and 12.2(52)SE1 on Cisco Industrial Ethernet (IE) 3000 series switches has (1) a comm IOS 12.2(52)SE and 12.2(52)SE1 on Cisco Industrial Ethernet (IE) 3000 series switches has (1) a community name of public for RO access and (2) a community name of private for RW access, which makes it easier for remote attackers to modify the configuration or obtain potentially sensitive information via SNMP requests, aka Bug ID CSCtf25589.
nvd
CVE-2025-20154P3HIGHCVSS 8.6≤ 15.9\(3\)m112025-05-07
CVE-2025-20154 [HIGH] CWE-20 CVE-2025-20154: A vulnerability in the Two-Way Active Measurement Protocol (TWAMP) server feature of Cisco IOS Softw A vulnerability in the Two-Way Active Measurement Protocol (TWAMP) server feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition. For Cisco IOS XR Software, this vulnerability could cause the ipsla_ippm_server proces
nvd
CVE-2008-3807P3CRITICALCVSS 9.3v12.2bcv12.2cx+3 more2008-09-26
CVE-2008-3807 [CRITICAL] CVE-2008-3807: Cisco IOS 12.2 and 12.3 on Cisco uBR10012 series devices, when linecard redundancy is configured, en Cisco IOS 12.2 and 12.3 on Cisco uBR10012 series devices, when linecard redundancy is configured, enables a read/write SNMP service with "private" as the community, which allows remote attackers to obtain administrative access by guessing this community and sending SNMP requests.
nvd
CVE-2018-0485P3HIGHCVSS 8.6v15.6\(3\)m2018-10-05
CVE-2018-0485 [HIGH] CWE-19 CVE-2018-0485: A vulnerability in the SM-1T3/E3 firmware on Cisco Second Generation Integrated Services Routers (IS A vulnerability in the SM-1T3/E3 firmware on Cisco Second Generation Integrated Services Routers (ISR G2) and the Cisco 4451-X Integrated Services Router (ISR4451-X) could allow an unauthenticated, remote attacker to cause the ISR G2 Router or the SM-1T3/E3 module on the ISR4451-X to reload, resulting in a denial of service (DoS) condition on an affected
nvd
CVE-2018-0473P3HIGHCVSS 8.6v15.2\(4\)ev15.2\(5\)2018-10-05
CVE-2018-0473 [HIGH] CWE-399 CVE-2018-0473: A vulnerability in the Precision Time Protocol (PTP) subsystem of Cisco IOS Software could allow an A vulnerability in the Precision Time Protocol (PTP) subsystem of Cisco IOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition of the Precision Time Protocol. The vulnerability is due to insufficient processing of PTP packets. An attacker could exploit this vulnerability by sending a custom PTP packet to
nvd
CVE-2017-3860P3HIGHCVSS 8.6v12.2\(33\)sxi4v12.2\(33\)sxi4a+350 more2017-04-20
CVE-2017-3860 [HIGH] CWE-119 CVE-2017-3860: Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisc Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisco IOS XE (3.2 through 3.18) could allow an unauthenticated, remote attacker to cause a buffer overflow condition or a reload of an affected device, leading to a denial of service (DoS) condition. These vulnerabilities are due to improper parsing of crafte
nvd
CVE-2017-3861P3HIGHCVSS 8.6v12.2\(33\)sxi4v12.2\(33\)sxi4a+350 more2017-04-20
CVE-2017-3861 [HIGH] CWE-119 CVE-2017-3861: Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisc Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisco IOS XE (3.2 through 3.18) could allow an unauthenticated, remote attacker to cause a buffer overflow condition or a reload of an affected device, leading to a denial of service (DoS) condition. These vulnerabilities are due to improper parsing of crafte
nvd
CVE-2017-3863P3HIGHCVSS 8.6v12.2\(33\)sxi4v12.2\(33\)sxi4a+350 more2017-04-20
CVE-2017-3863 [HIGH] CWE-119 CVE-2017-3863: Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisc Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisco IOS XE (3.2 through 3.18) could allow an unauthenticated, remote attacker to cause a buffer overflow condition or a reload of an affected device, leading to a denial of service (DoS) condition. These vulnerabilities are due to improper parsing of crafte
nvd
CVE-2017-3862P3HIGHCVSS 8.6v12.2\(33\)sxi4v12.2\(33\)sxi4a+350 more2017-04-20
CVE-2017-3862 [HIGH] CWE-119 CVE-2017-3862: Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisc Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisco IOS XE (3.2 through 3.18) could allow an unauthenticated, remote attacker to cause a buffer overflow condition or a reload of an affected device, leading to a denial of service (DoS) condition. These vulnerabilities are due to improper parsing of crafte
nvd