cbcvebase.

Cisco IOS XE vulnerabilities

505 known vulnerabilities affecting cisco/ios_xe.

Total CVEs
505
CISA KEV
27
actively exploited
Public exploits
8
Exploited in wild
33
Severity breakdown
CRITICAL20HIGH323MEDIUM161LOW1

Vulnerabilities

Page 1 of 26
CVE-2023-20198P1CRITICALCVSS 10.0KEVPoCRansomware≥ 16.12, < 16.12.10a≥ 17.3, < 17.3.8a+2 more2023-10-16
CVE-2023-20198 [CRITICAL] CWE-420 CVE-2023-20198: Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS XE Software. We are updating the list of fixed releases and adding the Software Checker. Our investigation has determined that the actors exploited two previously unknown issues. The attacker first exploited CVE-2023-20198 to gai
nvd
CVE-2017-3881P1CRITICALCVSS 9.8KEVPoC≥ 3.2sg, ≤ 3.9e2017-03-17
CVE-2017-3881 [CRITICAL] CWE-20 CVE-2017-3881: A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisc A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device or remotely execute code with elevated privileges. The Cluster Management Protocol utilizes Telnet internally as a signaling and command protocol
nvd
CVE-2023-44487P1HIGHCVSS 7.5KEVPoCfixed in 17.15.12023-10-10
CVE-2023-44487 [HIGH] CWE-400 CVE-2023-44487: The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancell The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
nvd
CVE-2017-6736P1HIGHCVSS 8.8KEVPoC≥ 2.2.0, ≤ 3.172017-07-17
CVE-2017-6736 [HIGH] CWE-119 CVE-2017-6736: The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains mu The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. An attacker could exploit these vulnerabilities by sending a crafted SNMP packet to an affected
nvd
CVE-2023-20273P1HIGHCVSS 7.2KEVPoCv16.1.1v16.1.2+187 more2023-10-25
CVE-2023-20273 [HIGH] CWE-78 CVE-2023-20273: A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to inject commands with the privileges of root. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web UI. A successful exploit could allow the attacker to inje
nvd
CVE-2016-6415P1HIGHCVSS 7.5KEVPoC≤ 3.18s2016-09-19
CVE-2016-6415 [HIGH] CWE-200 CVE-2016-6415: The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through 3.18S, IOS XR 4.3.x and 5.0.x through 5.2.x, and PIX before 7.0 allows remote attackers to obtain sensitive information from device memory via a Security Association (SA) negotiation request, aka Bug IDs CSCvb29204 and CSCvb36055 or BENIGNCERTAIN.
nvd
CVE-2017-6737P1HIGHCVSS 8.8KEV≥ 2.2.0, ≤ 3.17.02017-07-17
CVE-2017-6737 [HIGH] CWE-119 CVE-2017-6737: A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. An attacker could exploit this vulnerability by sending a crafted SNMP packet to the affected device. The vulnerability is due to a buffer overflow in the affected code area. The vulnerabili
nvd
CVE-2018-0151P1CRITICALCVSS 9.8KEVv16.5.12018-03-28
CVE-2018-0151 [CRITICAL] CWE-119 CVE-2018-0151: A vulnerability in the quality of service (QoS) subsystem of Cisco IOS Software and Cisco IOS XE Sof A vulnerability in the quality of service (QoS) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges. The vulnerability is due to incorrect bounds checking of certain values in packets that are destined
nvd
CVE-2025-20352P1HIGHCVSS 7.7KEVv3.5.0ev3.5.0sq+347 more2025-09-24
CVE-2025-20352 [HIGH] CWE-121 CVE-2025-20352: A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow the following: An authenticated, remote attacker with low privileges could cause a denial of service (DoS) condition on an affected device that is running Cisco IOS Software or Cisco IOS XE Software. To cause the DoS,
nvd
CVE-2017-6742P1HIGHCVSS 8.8KEV≥ 2.2.0, ≤ 3.172017-07-17
CVE-2017-6742 [HIGH] CWE-119 CVE-2017-6742: A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. An attacker could exploit this vulnerability by sending a crafted SNMP packet to the affected device. The vulnerability is due to a buffer overflow in the affected code area. The vulnerabili
nvd
CVE-2017-6740P1HIGHCVSS 8.8KEV≥ 2.2.0, ≤ 3.172017-07-17
CVE-2017-6740 [HIGH] CWE-119 CVE-2017-6740: The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains mu The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. An attacker could exploit these vulnerabilities by sending a crafted SNMP packet to an affected
nvd
CVE-2017-6738P1HIGHCVSS 8.8KEV≥ 2.2.0, ≤ 3.17.02017-07-17
CVE-2017-6738 [HIGH] CWE-119 CVE-2017-6738: The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains mu The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. An attacker could exploit these vulnerabilities by sending a crafted SNMP packet to an affected
nvd
CVE-2017-6739P1HIGHCVSS 8.8KEV≥ 2.2.0, ≤ 3.17.02017-07-17
CVE-2017-6739 [HIGH] CWE-119 CVE-2017-6739: A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. An attacker could exploit this vulnerability by sending a crafted SNMP packet to the affected device. The vulnerability is due to a buffer overflow in the affected code area. The vulnerabili
nvd
CVE-2017-6743P1HIGHCVSS 8.8KEV≥ 2.2.0, ≤ 3.172017-07-17
CVE-2017-6743 [HIGH] CWE-119 CVE-2017-6743: The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains mu The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. An attacker could exploit these vulnerabilities by sending a crafted SNMP packet to an affected
nvd
CVE-2018-0167P1HIGHCVSS 8.8KEVv5.2.0.base≤ 15.6.3m1+2 more2018-03-28
CVE-2018-0167 [HIGH] CWE-119 CVE-2018-0167: Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Ci Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. Cisco Bug IDs: CSCu
nvd
CVE-2018-0173P1HIGHCVSS 8.6KEVvdenali-16.3.4≤ 15.2\(6\)e0a+1 more2018-03-28
CVE-2018-0173 [HIGH] CWE-20 CVE-2018-0173: A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsula A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 information in DHCP Version 4 (DHCPv4) packets could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a Relay Reply denial of service (DoS) condition. The vulnerability exists because the affected
nvd
CVE-2018-0156P1HIGHCVSS 7.5KEVv15.2\(2\)e4v15.2\(2a\)ja2018-03-28
CVE-2018-0156 [HIGH] CWE-399 CVE-2018-0156: A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could a A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to improper validation of packet data. An attacker could exploit this vulnerability by sending a
nvd
CVE-2018-0175P1HIGHCVSS 8.0KEVv15.4\(3\)m4.1≤ 15.2\(4a\)ea5+2 more2018-03-28
CVE-2018-0175 [HIGH] CWE-119 CVE-2018-0175: Format String vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Softw Format String vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. Cisco Bug IDs: CSCvd73664.
nvd
CVE-2018-0155P2HIGHCVSS 8.6KEVv3.6\(2\)e2018-03-28
CVE-2018-0155 [HIGH] CWE-388 CVE-2018-0155: A vulnerability in the Bidirectional Forwarding Detection (BFD) offload implementation of Cisco Cata A vulnerability in the Bidirectional Forwarding Detection (BFD) offload implementation of Cisco Catalyst 4500 Series Switches and Cisco Catalyst 4500-X Series Switches could allow an unauthenticated, remote attacker to cause a crash of the iosd process, causing a denial of service (DoS) condition. The vulnerability is due to insufficient error handling
nvd
CVE-2018-0174P2HIGHCVSS 8.6KEVv12.2\(33\)sre7a≤ 15.2\(4a\)ea5+1 more2018-03-28
CVE-2018-0174 [HIGH] CWE-20 CVE-2018-0174: A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IO A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability exists because the affected software performs incomplete input validation of option 82
nvd
1 / 26Next →
Cisco IOS XE vulnerabilities | cvebase