cbcvebase.

Cisco iOS vulnerabilities

581 known vulnerabilities affecting cisco/ios.

Total CVEs
581
CISA KEV
37
actively exploited
Public exploits
28
Exploited in wild
41
Severity breakdown
CRITICAL31HIGH327MEDIUM212LOW11

Vulnerabilities

Page 5 of 30
CVE-2017-3864P3HIGHCVSS 8.6≥ 15.0, ≤ 15.6v12.2+1 more2017-03-22
CVE-2017-3864 [HIGH] CWE-399 CVE-2017-3864: A vulnerability in the DHCP client implementation of Cisco IOS (12.2, 12.4, and 15.0 through 15.6) a A vulnerability in the DHCP client implementation of Cisco IOS (12.2, 12.4, and 15.0 through 15.6) and Cisco IOS XE (3.3 through 3.7) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability occurs during the parsing of a crafted DHCP packet. An attacker could exploit this vulnerability by sending c
nvd
CVE-2020-3225P3HIGHCVSS 8.6v12.2\(44\)exv12.2\(44\)ex1+242 more2020-06-03
CVE-2020-3225 [HIGH] CWE-20 CVE-2020-3225: Multiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature of Ci Multiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerabilities are due to insufficient input processing of CIP traffic.
nvd
CVE-2020-3228P3HIGHCVSS 8.6v12.2\(6\)i1v15.1\(1\)sy+255 more2020-06-03
CVE-2020-3228 [HIGH] CWE-20 CVE-2020-3228: A vulnerability in Security Group Tag Exchange Protocol (SXP) in Cisco IOS Software, Cisco IOS XE So A vulnerability in Security Group Tag Exchange Protocol (SXP) in Cisco IOS Software, Cisco IOS XE Software, and Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability exists because crafted SXP packets are mishandled. An attacker coul
nvd
CVE-2019-16009P3HIGHCVSS 8.8fixed in 16.1.12020-09-23
CVE-2019-16009 [HIGH] CWE-352 CVE-2019-16009: A vulnerability in the web UI of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, A vulnerability in the web UI of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web UI on an affected device. An attacker could exploit this vulnerability by persuading a us
nvd
CVE-2018-0255P3HIGHCVSS 8.8v15.2\(5\)e2018-04-19
CVE-2018-0255 [HIGH] CWE-352 CVE-2018-0255: A vulnerability in the device manager web interface of Cisco Industrial Ethernet Switches could allo A vulnerability in the device manager web interface of Cisco Industrial Ethernet Switches could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack against a user of an affected system. The vulnerability is due to insufficient CSRF protection by the device manager web interface. An attacker could exploit this
nvd
CVE-2020-3199P3HIGHCVSS 8.8v12.2\(60\)ez16v15.0\(2\)sg11a+87 more2020-06-03
CVE-2020-3199 [HIGH] CWE-20 CVE-2020-3199: Multiple vulnerabilities in the Cisco IOx application environment of Cisco 809 and 829 Industrial In Multiple vulnerabilities in the Cisco IOx application environment of Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) that are running Cisco IOS Software could allow an attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges o
nvd
CVE-2015-6280P3CRITICALCVSS 9.3v15.2\(1\)syv15.2\(1\)sy0a+46 more2015-09-28
CVE-2015-6280 [CRITICAL] CWE-287 CVE-2015-6280: The SSHv2 functionality in Cisco IOS 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.6E before 3.6.3E, 3.7E The SSHv2 functionality in Cisco IOS 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.6E before 3.6.3E, 3.7E before 3.7.1E, 3.10S before 3.10.6S, 3.11S before 3.11.4S, 3.12S before 3.12.3S, 3.13S before 3.13.3S, and 3.14S before 3.14.1S does not properly implement RSA authentication, which allows remote attackers to obtain login access by leveraging knowledge
nvd
CVE-2019-1747P3HIGHCVSS 8.6v15.8\(3\)m2019-03-28
CVE-2019-1747 [HIGH] CWE-20 CVE-2019-1747: A vulnerability in the implementation of the Short Message Service (SMS) handling functionality of C A vulnerability in the implementation of the Short Message Service (SMS) handling functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to improper processing of SMS protocol data units (PDUs) that are enc
nvd
CVE-2019-1740P3HIGHCVSS 8.6v15.3\(3\)jdv15.3\(3\)jd2+89 more2019-03-28
CVE-2019-1740 [HIGH] CWE-20 CVE-2019-1740: A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software an A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability are due to a parsing issue on DNS packets. An attacker could exploit this vulnerability by sending crafted DNS packets through
nvd
CVE-2018-15377P3HIGHCVSS 8.6v15.7\(3.1s\)mvdenali-16.3.6+1 more2018-10-05
CVE-2018-15377 [HIGH] CWE-400 CVE-2018-15377: A vulnerability in the Cisco Network Plug and Play agent, also referred to as the Cisco Open Plug-n- A vulnerability in the Cisco Network Plug and Play agent, also referred to as the Cisco Open Plug-n-Play agent, of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a memory leak on an affected device. The vulnerability is due to insufficient input validation by the affected software. An attacker cou
nvd
CVE-2020-3408P3HIGHCVSS 8.6v15.8\(3\)m32020-09-24
CVE-2020-3408 [HIGH] CWE-185 CVE-2020-3408: A vulnerability in the Split DNS feature of Cisco IOS Software and Cisco IOS XE Software could allow A vulnerability in the Split DNS feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability occurs because the regular expression (regex) engine that is used with the Split DNS feature of affected releas
nvd
CVE-1999-0063P4MEDIUMCVSS 5.0PoCv11.3aav11.3db+10 more1999-01-11
CVE-1999-0063 [MEDIUM] CVE-1999-0063: Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port. Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port.
nvd
CVE-2019-1737P3HIGHCVSS 8.6v12.2\(58\)exv12.2\(58\)ez+418 more2019-03-27
CVE-2019-1737 [HIGH] CWE-400 CVE-2019-1737: A vulnerability in the processing of IP Service Level Agreement (SLA) packets by Cisco IOS Software A vulnerability in the processing of IP Service Level Agreement (SLA) packets by Cisco IOS Software and Cisco IOS XE software could allow an unauthenticated, remote attacker to cause an interface wedge and an eventual denial of service (DoS) condition on the affected device. The vulnerability is due to improper socket resources handling in the IP SLA res
nvd
CVE-2020-3226P3HIGHCVSS 8.6v15.0\(2\)sg11av15.3\(3\)jaa1+101 more2020-06-03
CVE-2020-3226 [HIGH] CWE-20 CVE-2020-3226: A vulnerability in the Session Initiation Protocol (SIP) library of Cisco IOS Software and Cisco IOS A vulnerability in the Session Initiation Protocol (SIP) library of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to insufficient sanity checks on received SIP messages. An attacker could exp
nvd
CVE-2020-3234P3HIGHCVSS 8.8v12.2\(60\)ez16v15.0\(2\)sg11a+85 more2020-06-03
CVE-2020-3234 [HIGH] CWE-798 CVE-2020-3234: A vulnerability in the virtual console authentication of Cisco IOS Software for Cisco 809 and 829 In A vulnerability in the virtual console authentication of Cisco IOS Software for Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) could allow an authenticated but low-privileged, local attacker to log in to the Virtual Device Server (VDS) of an affected device by using a set
nvd
CVE-2025-20172P3HIGHCVSS 7.7v12.2\(33\)srev12.2\(33\)sre0a+1354 more2025-02-05
CVE-2025-20172 [HIGH] CWE-248 CVE-2025-20172: A vulnerability in the SNMP subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR A vulnerability in the SNMP subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper error handling when parsing SNMP requests. An attacker could exploit this vulnerability by sending a crafted S
nvd
CVE-2025-20171P3HIGHCVSS 7.7v12.2\(33\)cxv12.2\(33\)cy+2252 more2025-02-05
CVE-2025-20171 [HIGH] CWE-248 CVE-2025-20171: A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper error handling when parsing SNMP requests. An attacker could exploit this vulnerability by sending a crafted SNMP request to an affect
nvd
CVE-2025-20170P3HIGHCVSS 7.7v12.2\(1\)v12.2\(1\)dx+5896 more2025-02-05
CVE-2025-20170 [HIGH] CWE-805 CVE-2025-20170: A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper error handling when parsing SNMP requests. An attacker could exploit this vulnerability by sending a crafted SNMP request to an affect
nvd
CVE-2025-20169P3HIGHCVSS 7.7v12.2\(1\)v12.2\(1\)dx+5896 more2025-02-05
CVE-2025-20169 [HIGH] CWE-805 CVE-2025-20169: A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper error handling when parsing SNMP requests. An attacker could exploit this vulnerability by sending a crafted SNMP request to an affect
nvd
CVE-2025-20174P3HIGHCVSS 7.7v15.2\(1\)syv15.2\(1\)sy0a+436 more2025-02-05
CVE-2025-20174 [HIGH] CWE-805 CVE-2025-20174: A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper error handling when parsing SNMP requests. An attacker could exploit this vulnerability by sending a crafted SNMP request to an affect
nvd