Cisco IOS XE vulnerabilities
505 known vulnerabilities affecting cisco/ios_xe.
Total CVEs
505
CISA KEV
27
actively exploited
Public exploits
8
Exploited in wild
28
Severity breakdown
CRITICAL20HIGH323MEDIUM161LOW1
Vulnerabilities
Page 11 of 26
CVE-2020-3513MEDIUMCVSS 6.7v16.12.1v17.22020-09-24
CVE-2020-3513 [MEDIUM] CWE-749 CVE-2020-3513: Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS
Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS XE Software for Cisco ASR 900 Series Aggregation Services Routers with a Route Switch Processor 3 (RSP3) installed could allow an authenticated, local attacker with high privileges to execute persistent code at bootup and break the chain of trust. Thes
nvd
CVE-2020-3429MEDIUMCVSS 6.5v16.12.1s2020-09-24
CVE-2020-3429 [MEDIUM] CWE-20 CVE-2020-3429: A vulnerability in the WPA2 and WPA3 security implementation of Cisco IOS XE Wireless Controller Sof
A vulnerability in the WPA2 and WPA3 security implementation of Cisco IOS XE Wireless Controller Software for the Cisco Catalyst 9000 Family could allow an unauthenticated, adjacent attacker to cause denial of service (DoS) condition on an affected device. The vulnerability is due to incorrect packet processing during the WPA2 and WPA3 authentication h
nvd
CVE-2020-3516MEDIUMCVSS 4.3fixed in 16.9.6≥ 16.12.0, < 16.12.2+2 more2020-09-24
CVE-2020-3516 [MEDIUM] CWE-20 CVE-2020-3516: A vulnerability in the web server authentication of Cisco IOS XE Software could allow an authenticat
A vulnerability in the web server authentication of Cisco IOS XE Software could allow an authenticated, remote attacker to crash the web server on the device. The vulnerability is due to insufficient input validation during authentication. An attacker could exploit this vulnerability by entering unexpected characters during a valid authentication. A su
nvd
CVE-2020-3503MEDIUMCVSS 6.0v16.12.12020-09-24
CVE-2020-3503 [MEDIUM] CWE-284 CVE-2020-3503: A vulnerability in the file system permissions of Cisco IOS XE Software could allow an authenticated
A vulnerability in the file system permissions of Cisco IOS XE Software could allow an authenticated, local attacker to obtain read and write access to critical configuration or system files. The vulnerability is due to insufficient file system permissions on an affected device. An attacker could exploit this vulnerability by connecting to an affected
nvd
CVE-2020-3465MEDIUMCVSS 6.5v16.6.9v17.4.12020-09-24
CVE-2020-3465 [MEDIUM] CWE-20 CVE-2020-3465: A vulnerability in Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause
A vulnerability in Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a device to reload. The vulnerability is due to incorrect handling of certain valid, but not typical, Ethernet frames. An attacker could exploit this vulnerability by sending the Ethernet frames onto the Ethernet segment. A successful exploit could allow
nvd
CVE-2020-3417MEDIUMCVSS 6.7v3.18.0spv3.18.1asp+96 more2020-09-24
CVE-2020-3417 [MEDIUM] CWE-78 CVE-2020-3417: A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to execute per
A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to execute persistent code at boot time and break the chain of trust. This vulnerability is due to incorrect validations by boot scripts when specific ROM monitor (ROMMON) variables are set. An attacker could exploit this vulnerability by installing code to a specific
nvd
CVE-2020-3416MEDIUMCVSS 6.7v16.12.1v17.22020-09-24
CVE-2020-3416 [MEDIUM] CWE-749 CVE-2020-3416: Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS
Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS XE Software for Cisco ASR 900 Series Aggregation Services Routers with a Route Switch Processor 3 (RSP3) installed could allow an authenticated, local attacker with high privileges to execute persistent code at bootup and break the chain of trust. Thes
nvd
CVE-2019-16009HIGHCVSS 8.8fixed in 16.1.12020-09-23
CVE-2019-16009 [HIGH] CWE-352 CVE-2019-16009: A vulnerability in the web UI of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated,
A vulnerability in the web UI of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web UI on an affected device. An attacker could exploit this vulnerability by persuading a us
nvd
CVE-2020-3227CRITICALCVSS 9.8v3.11.6ev16.3.1+68 more2020-06-03
CVE-2020-3227 [CRITICAL] CWE-264 CVE-2020-3227: A vulnerability in the authorization controls for the Cisco IOx application hosting infrastructure i
A vulnerability in the authorization controls for the Cisco IOx application hosting infrastructure in Cisco IOS XE Software could allow an unauthenticated, remote attacker to execute Cisco IOx API commands without proper authorization. The vulnerability is due to incorrect handling of requests for authorization tokens. An attacker could exploit this
nvd
CVE-2020-3211HIGHCVSS 7.2v16.10.1v16.10.1a+14 more2020-06-03
CVE-2020-3211 [HIGH] CWE-77 CVE-2020-3211: A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system of an affected device. The vulnerability is due to improper input sanitization. An attacker who has valid administrative access to an affected device could exploit this
nvd
CVE-2020-3200HIGHCVSS 7.7v3.2.0sev3.2.1se+287 more2020-06-03
CVE-2020-3200 [HIGH] CWE-371 CVE-2020-3200: A vulnerability in the Secure Shell (SSH) server code of Cisco IOS Software and Cisco IOS XE Softwar
A vulnerability in the Secure Shell (SSH) server code of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause an affected device to reload. The vulnerability is due to an internal state not being represented correctly in the SSH state machine, which leads to an unexpected behavior. An attacker could exploit
nvd
CVE-2020-3232HIGHCVSS 7.7v3.16.0sv3.16.1as+55 more2020-06-03
CVE-2020-3232 [HIGH] CWE-19 CVE-2020-3232: A vulnerability in the Simple Network Management Protocol (SNMP) implementation in Cisco ASR 920 Ser
A vulnerability in the Simple Network Management Protocol (SNMP) implementation in Cisco ASR 920 Series Aggregation Services Router model ASR920-12SZ-IM could allow an authenticated, remote attacker to cause the device to reload. The vulnerability is due to incorrect handling of data that is returned for Cisco Discovery Protocol queries to SNMP. An attac
nvd
CVE-2020-3228HIGHCVSS 8.6v3.3.0sev3.3.0xo+217 more2020-06-03
CVE-2020-3228 [HIGH] CWE-20 CVE-2020-3228: A vulnerability in Security Group Tag Exchange Protocol (SXP) in Cisco IOS Software, Cisco IOS XE So
A vulnerability in Security Group Tag Exchange Protocol (SXP) in Cisco IOS Software, Cisco IOS XE Software, and Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability exists because crafted SXP packets are mishandled. An attacker coul
nvd
CVE-2020-3203HIGHCVSS 8.6v16.1.1v16.1.2+52 more2020-06-03
CVE-2020-3203 [HIGH] CWE-400 CVE-2020-3203: A vulnerability in the locally significant certificate (LSC) provisioning feature of Cisco Catalyst
A vulnerability in the locally significant certificate (LSC) provisioning feature of Cisco Catalyst 9800 Series Wireless Controllers that are running Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a memory leak that could lead to a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certa
nvd
CVE-2020-3230HIGHCVSS 7.5v3.3.0sgv3.3.0xo+262 more2020-06-03
CVE-2020-3230 [HIGH] CWE-20 CVE-2020-3230: A vulnerability in the Internet Key Exchange Version 2 (IKEv2) implementation in Cisco IOS Software
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) implementation in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to prevent IKEv2 from establishing new security associations. The vulnerability is due to incorrect handling of crafted IKEv2 SA-Init packets. An attacker could exploit this vulnerabi
nvd
CVE-2020-3225HIGHCVSS 8.6v3.3.0xov3.3.1xo+32 more2020-06-03
CVE-2020-3225 [HIGH] CWE-20 CVE-2020-3225: Multiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature of Ci
Multiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerabilities are due to insufficient input processing of CIP traffic.
nvd
CVE-2020-3235HIGHCVSS 7.7v3.2.0sgv3.2.1sg+66 more2020-06-03
CVE-2020-3235 [HIGH] CWE-118 CVE-2020-3235: A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software on Catalyst 4500 Series Switches could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to insufficient input validation when the software processes specific SNMP object
nvd
CVE-2020-3221HIGHCVSS 8.6v16.10.1v16.10.1a+14 more2020-06-03
CVE-2020-3221 [HIGH] CWE-20 CVE-2020-3221: A vulnerability in the Flexible NetFlow Version 9 packet processor of Cisco IOS XE Software for Cisc
A vulnerability in the Flexible NetFlow Version 9 packet processor of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper validation of parameters in a Flexible NetFlow Version 9 re
nvd
CVE-2020-3226HIGHCVSS 8.6v3.10.0sv3.10.1s+155 more2020-06-03
CVE-2020-3226 [HIGH] CWE-20 CVE-2020-3226: A vulnerability in the Session Initiation Protocol (SIP) library of Cisco IOS Software and Cisco IOS
A vulnerability in the Session Initiation Protocol (SIP) library of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to insufficient sanity checks on received SIP messages. An attacker could exp
nvd
CVE-2020-3219HIGHCVSS 8.8v16.1.1v16.1.2+90 more2020-06-03
CVE-2020-3219 [HIGH] CWE-77 CVE-2020-3219: A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to inject and execute arbitrary commands with administrative privileges on the underlying operating system of an affected device. The vulnerability is due to insufficient validation of user-supplied input to the web UI. An attacker could exploit this vuln
nvd