Cisco iOS vulnerabilities
581 known vulnerabilities affecting cisco/ios.
Total CVEs
581
CISA KEV
37
actively exploited
Public exploits
28
Exploited in wild
41
Severity breakdown
CRITICAL31HIGH327MEDIUM212LOW11
Vulnerabilities
Page 6 of 30
CVE-2025-20176P3HIGHCVSS 7.7v15.0\(1\)syv15.0\(1\)sy1+1020 more2025-02-05
CVE-2025-20176 [HIGH] CWE-248 CVE-2025-20176: A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device.
This vulnerability is due to improper error handling when parsing SNMP requests. An attacker could exploit this vulnerability by sending a crafted SNMP request to an affect
nvd
CVE-2025-20173P3HIGHCVSS 7.7v12.2\(33\)srev12.2\(33\)sre0a+1920 more2025-02-05
CVE-2025-20173 [HIGH] CWE-248 CVE-2025-20173: A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device.
This vulnerability is due to improper error handling when parsing SNMP requests. An attacker could exploit this vulnerability by sending a crafted SNMP request to an affect
nvd
CVE-2025-20175P3HIGHCVSS 7.7v12.2\(33\)sxi4v12.2\(33\)sxi4a+1786 more2025-02-05
CVE-2025-20175 [HIGH] CWE-805 CVE-2025-20175: A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device.
This vulnerability is due to improper error handling when parsing SNMP requests. An attacker could exploit this vulnerability by sending a crafted SNMP request to an affect
nvd
CVE-2009-1220P4MEDIUMCVSS 4.3PoCv7.2\(2\)222009-04-01
CVE-2009-1220 [MEDIUM] CWE-79 CVE-2009-1220: Cross-site scripting (XSS) vulnerability in +webvpn+/index.html in WebVPN on the Cisco Adaptive Secu
Cross-site scripting (XSS) vulnerability in +webvpn+/index.html in WebVPN on the Cisco Adaptive Security Appliances (ASA) 5520 with software 7.2(4)30 and earlier 7.2 versions including 7.2(2)22, and 8.0(4)28 and earlier 8.0 versions, when clientless mode is enabled, allows remote attackers to inject arbitrary web script or HTML via the Host HTTP header
nvd
CVE-2022-20697P3HIGHCVSS 8.6v15.1\(3\)svr1v15.1\(3\)svr2+24 more2022-04-15
CVE-2022-20697 [HIGH] CWE-691 CVE-2022-20697: A vulnerability in the web services interface of Cisco IOS Software and Cisco IOS XE Software could
A vulnerability in the web services interface of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to improper resource management in the HTTP server code. An attacker could exploit this vulnerability by sending a large number of HTTP reques
nvd
CVE-2012-0384P3HIGHCVSS 7.2v12.2v12.2\(1\)+776 more2012-03-29
CVE-2012-0384 [HIGH] CWE-269 CVE-2012-0384: Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS before 3
Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS before 3.1.2S, 3.2.xS through 3.4.xS before 3.4.2S, 3.5.xS before 3.5.1S, and 3.1.xSG and 3.2.xSG before 3.2.2SG, when AAA authorization is enabled, allow remote authenticated users to bypass intended access restrictions and execute commands via a (1) HTTP or (2)
nvd
CVE-2008-3821P4MEDIUMCVSS 4.3PoCv12.0v12.0da+282 more2009-01-16
CVE-2008-3821 [MEDIUM] CWE-79 CVE-2008-3821: Multiple cross-site scripting (XSS) vulnerabilities in the HTTP server in Cisco IOS 11.0 through 12.
Multiple cross-site scripting (XSS) vulnerabilities in the HTTP server in Cisco IOS 11.0 through 12.4 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to the ping program or (2) unspecified other aspects of the URI.
nvd
CVE-2003-0511P4MEDIUMCVSS 5.0PoCv12.2\(4\)jav12.2\(4\)ja1+2 more2003-08-27
CVE-2003-0511 [MEDIUM] CVE-2003-0511: The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2
The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2 allow remote attackers to cause a denial of service (reload) via a malformed URL.
nvd
CVE-2020-3230P3HIGHCVSS 7.5v12.2\(6\)i1v15.0\(2\)ej+526 more2020-06-03
CVE-2020-3230 [HIGH] CWE-20 CVE-2020-3230: A vulnerability in the Internet Key Exchange Version 2 (IKEv2) implementation in Cisco IOS Software
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) implementation in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to prevent IKEv2 from establishing new security associations. The vulnerability is due to incorrect handling of crafted IKEv2 SA-Init packets. An attacker could exploit this vulnerabi
nvd
CVE-2018-0169P3HIGHCVSS 7.8v15.0\(5.59\)emd2018-03-28
CVE-2018-0169 [HIGH] CWE-264 CVE-2018-0169: Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software could allow an authenticated, lo
Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Linux shell of an affected device and execute arbitrary commands with root privileges on the device. The vulnerabilities are due to the affected software improperly sanitizing command arguments to prevent acce
nvd
CVE-2016-6474P3HIGHCVSS 7.3v15.5\(2.25\)t2016-12-14
CVE-2016-6474 [HIGH] CWE-287 CVE-2016-6474: A vulnerability in the implementation of X.509 Version 3 for SSH authentication functionality in Cis
A vulnerability in the implementation of X.509 Version 3 for SSH authentication functionality in Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to bypass authentication on an affected system. More Information: CSCuv89417. Known Affected Releases: 15.5(2.25)T. Known Fixed Releases: 15.2(4)E1 15.2(4)E2 15.2(4)E3 15.2(4)EA4 1
nvd
CVE-2025-20327P3HIGHCVSS 7.7v15.2(6)E2v15.2(7)E+27 more2025-09-24
CVE-2025-20327 [HIGH] CWE-1287 CVE-2025-20327: A vulnerability in the web UI of Cisco IOS Software could allow an authenticated, remote attacker wi
A vulnerability in the web UI of Cisco IOS Software could allow an authenticated, remote attacker with low privileges to cause a denial of service (DoS) condition on an affected device.
This vulnerability is due to improper input validation. An attacker could exploit this vulnerability by sending a crafted URL in an HTTP request. A successful exploit
nvd
CVE-2026-20125P3HIGHCVSS 7.7v12.2(33)CYv12.2(33)CY1+941 more2026-03-25
CVE-2026-20125 [HIGH] CWE-228 CVE-2026-20125: A vulnerability in the HTTP Server feature of Cisco IOS Software and Cisco IOS XE Software Release 3
A vulnerability in the HTTP Server feature of Cisco IOS Software and Cisco IOS XE Software Release 3E could allow an authenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition.
This vulnerability is due to improper validation of user-supplied input. An attacker could exploit this
nvd
CVE-2024-20307P3HIGHCVSS 7.5v15.1\(2\)sg8v15.1\(2\)sy8+292 more2024-03-27
CVE-2024-20307 [HIGH] CWE-121 CVE-2024-20307: A vulnerability in the IKEv1 fragmentation code of Cisco IOS Software and Cisco IOS XE Software coul
A vulnerability in the IKEv1 fragmentation code of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a heap overflow, resulting in an affected device reloading.
This vulnerability exists because crafted, fragmented IKEv1 packets are not properly reassembled. An attacker could exploit this vulnerabili
nvd
CVE-2024-20433P3HIGHCVSS 7.5v12.0\(24\)sv12.0\(24\)s1+4072 more2024-09-25
CVE-2024-20433 [HIGH] CWE-121 CVE-2024-20433: A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and Cisco
A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition.
This vulnerability is due to a buffer overflow when processing crafted RSVP packets. An
nvd
CVE-2021-1385P3MEDIUMCVSS 6.5v15.8\(3\)m2av15.8\(3\)m3+8 more2021-03-24
CVE-2021-1385 [MEDIUM] CWE-22 CVE-2021-1385: A vulnerability in the Cisco IOx application hosting environment of multiple Cisco platforms could a
A vulnerability in the Cisco IOx application hosting environment of multiple Cisco platforms could allow an authenticated, remote attacker to conduct directory traversal attacks and read and write files on the underlying operating system or host system. This vulnerability occurs because the device does not properly validate URIs in IOx API requests. An
nvd
CVE-2009-2865P3HIGHCVSS 7.6v12.4xwv12.4xy+2 more2009-09-28
CVE-2009-2865 [HIGH] CWE-119 CVE-2009-2865: Buffer overflow in the login implementation in the Extension Mobility feature in the Unified Communi
Buffer overflow in the login implementation in the Extension Mobility feature in the Unified Communications Manager Express (CME) component in Cisco IOS 12.4XW, 12.4XY, 12.4XZ, and 12.4YA allows remote attackers to execute arbitrary code or cause a denial of service via crafted HTTP requests, aka Bug ID CSCsq58779.
nvd
CVE-2019-12652P3HIGHCVSS 7.5v15.2\(3\)e1v15.2\(4\)e32019-09-25
CVE-2019-12652 [HIGH] CWE-399 CVE-2019-12652: A vulnerability in the ingress packet processing function of Cisco IOS Software for Cisco Catalyst 4
A vulnerability in the ingress packet processing function of Cisco IOS Software for Cisco Catalyst 4000 Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper resource allocation when processing TCP packets directed to the device on specif
nvd
CVE-2016-9201P3HIGHCVSS 7.5v15.3\(3\)m32016-12-14
CVE-2016-9201 [HIGH] CWE-20 CVE-2016-9201: A vulnerability in the Zone-Based Firewall feature of Cisco IOS and Cisco IOS XE Software could allo
A vulnerability in the Zone-Based Firewall feature of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to pass traffic that should otherwise have been dropped based on the configuration. More Information: CSCuz21015. Known Affected Releases: 15.3(3)M3. Known Fixed Releases: 15.6(2)T0.1 15.6(2.0.1a)T0 15.6(2.19)T 15.6(3)
nvd
CVE-2020-3257P3HIGHCVSS 8.1v15.8\(3.0z\)m1v15.92020-06-03
CVE-2020-3257 [HIGH] CWE-20 CVE-2020-3257: Multiple vulnerabilities in the Cisco IOx application environment of Cisco 809 and 829 Industrial In
Multiple vulnerabilities in the Cisco IOx application environment of Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) that are running Cisco IOS Software could allow an attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges o
nvd