cbcvebase.

Cisco IOS XE vulnerabilities

505 known vulnerabilities affecting cisco/ios_xe.

Total CVEs
505
CISA KEV
27
actively exploited
Public exploits
8
Exploited in wild
33
Severity breakdown
CRITICAL20HIGH323MEDIUM161LOW1

Vulnerabilities

Page 18 of 26
CVE-2013-1166P3HIGHCVSS 7.8v3.2.0sv3.2.1s+11 more2013-04-11
CVE-2013-1166 [HIGH] CWE-20 CVE-2013-1166: Cisco IOS XE 3.2 through 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggreg Cisco IOS XE 3.2 through 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR), when VRF-aware NAT and SIP ALG are enabled, allows remote attackers to cause a denial of service (card reload) by sending many SIP packets, aka Bug ID CSCuc65609.
nvd
CVE-2013-5478P4HIGHCVSS 7.8v3.2.00.xo.15.0\(2\)xov3.2.0s+32 more2013-09-27
CVE-2013-5478 [HIGH] CWE-20 CVE-2013-5478: Cisco IOS 15.0 through 15.3 and IOS XE 3.2 through 3.8, when a VRF interface exists, allows remote a Cisco IOS 15.0 through 15.3 and IOS XE 3.2 through 3.8, when a VRF interface exists, allows remote attackers to cause a denial of service (interface queue wedge) via crafted UDP RSVP packets, aka Bug ID CSCuf17023.
nvd
CVE-2011-3282P4HIGHCVSS 7.8v2.1.0v2.1.1+27 more2011-10-03
CVE-2011-3282 [HIGH] CVE-2011-3282: Unspecified vulnerability in Cisco IOS 12.2SRE before 12.2(33)SRE4, 15.0, and 15.1, and IOS XE 2.1.x Unspecified vulnerability in Cisco IOS 12.2SRE before 12.2(33)SRE4, 15.0, and 15.1, and IOS XE 2.1.x through 3.3.x, when an MPLS domain is configured, allows remote attackers to cause a denial of service (device reload) via an ICMPv6 packet, related to an expired MPLS TTL, aka Bug ID CSCtj30155.
nvd
CVE-2011-0939P4HIGHCVSS 7.8v2.5.0v2.5.1+12 more2011-10-03
CVE-2011-0939 [HIGH] CVE-2011-0939: Unspecified vulnerability in Cisco IOS 12.4, 15.0, and 15.1, and IOS XE 2.5.x through 3.2.x, allows Unspecified vulnerability in Cisco IOS 12.4, 15.0, and 15.1, and IOS XE 2.5.x through 3.2.x, allows remote attackers to cause a denial of service (device reload) via a crafted SIP message, aka Bug ID CSCth03022.
nvd
CVE-2011-2072P4HIGHCVSS 7.8v2.5.0v2.5.1+12 more2011-10-03
CVE-2011-2072 [HIGH] CWE-399 CVE-2011-2072: Memory leak in Cisco IOS 12.4, 15.0, and 15.1, Cisco IOS XE 2.5.x through 3.2.x, and Cisco Unified C Memory leak in Cisco IOS 12.4, 15.0, and 15.1, Cisco IOS XE 2.5.x through 3.2.x, and Cisco Unified Communications Manager (CUCM) 6.x and 7.x before 7.1(5b)su4, 8.x before 8.5(1)su2, and 8.6 before 8.6(1) allows remote attackers to cause a denial of service (memory consumption and device reload or process failure) via a malformed SIP message, aka Bug IDs
nvd
CVE-2018-0475P4HIGHCVSS 7.4v15.0\(2.0.0\)2018-10-05
CVE-2018-0475 [HIGH] CWE-20 CVE-2018-0475: A vulnerability in the implementation of the cluster feature of Cisco IOS Software and Cisco IOS XE A vulnerability in the implementation of the cluster feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation when handling Cluster Management Protocol (CMP) messages. An attacker coul
nvd
CVE-2021-34767P4HIGHCVSS 7.4v3.15.1xbsv3.15.2xbs+90 more2021-09-23
CVE-2021-34767 [HIGH] CWE-670 CVE-2021-34767: A vulnerability in IPv6 traffic processing of Cisco IOS XE Wireless Controller Software for Cisco Ca A vulnerability in IPv6 traffic processing of Cisco IOS XE Wireless Controller Software for Cisco Catalyst 9000 Family Wireless Controllers could allow an unauthenticated, adjacent attacker to cause a Layer 2 (L2) loop in a configured VLAN, resulting in a denial of service (DoS) condition for that VLAN. The vulnerability is due to a logic error when p
nvd
CVE-2018-0165P4HIGHCVSS 7.4v15.2\(3\)evdenali-16.3.32018-03-28
CVE-2018-0165 [HIGH] CWE-399 CVE-2018-0165: A vulnerability in the Internet Group Management Protocol (IGMP) packet-processing functionality of A vulnerability in the Internet Group Management Protocol (IGMP) packet-processing functionality of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to exhaust buffers on an affected device, resulting in a denial of service (DoS) condition, aka a Memory Leak. The vulnerability is due to the affected software insufficiently processi
nvd
CVE-2017-3824P4MEDIUMCVSS 6.8v3.16.0v3.16.1+1 more2017-02-03
CVE-2017-3824 [MEDIUM] CWE-119 CVE-2017-3824: A vulnerability in the handling of list headers in Cisco cBR Series Converged Broadband Routers coul A vulnerability in the handling of list headers in Cisco cBR Series Converged Broadband Routers could allow an unauthenticated, remote attacker to cause the device to reload, resulting in a denial of service (DoS) condition. Cisco cBR-8 Converged Broadband Routers running vulnerable versions of Cisco IOS XE are affected. More Information: CSCux40637.
nvd
CVE-2017-3820P4MEDIUMCVSS 6.5v3.13.6sv3.16.2s+1 more2017-02-03
CVE-2017-3820 [MEDIUM] CWE-665 CVE-2017-3820: A vulnerability in Simple Network Management Protocol (SNMP) functions of Cisco ASR 1000 Series Aggr A vulnerability in Simple Network Management Protocol (SNMP) functions of Cisco ASR 1000 Series Aggregation Services Routers running Cisco IOS XE Software Release 3.13.6S, 3.16.2S, or 3.17.1S could allow an authenticated, remote attacker to cause high CPU usage on an affected device, resulting in a denial of service (DoS) condition. More Information:
nvd
CVE-2020-3494P3HIGHCVSS 7.4v16.12.12020-09-24
CVE-2020-3494 [HIGH] CWE-20 CVE-2020-3494: Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition of an affected device. These vulnerabilities are due to insufficient val
nvd
CVE-2020-3508P3HIGHCVSS 7.4v16.3.1v16.6.5+4 more2020-09-24
CVE-2020-3508 [HIGH] CWE-400 CVE-2020-3508: A vulnerability in the IP Address Resolution Protocol (ARP) feature of Cisco IOS XE Software for Cis A vulnerability in the IP Address Resolution Protocol (ARP) feature of Cisco IOS XE Software for Cisco ASR 1000 Series Aggregation Services Routers with a 20-Gbps Embedded Services Processor (ESP) installed could allow an unauthenticated, adjacent attacker to cause an affected device to reload, resulting in a denial of service condition. The vulnerabili
nvd
CVE-2021-1621P4HIGHCVSS 7.4fixed in 17.3.12021-09-23
CVE-2021-1621 [HIGH] CWE-399 CVE-2021-1621: A vulnerability in the Layer 2 punt code of Cisco IOS XE Software could allow an unauthenticated, ad A vulnerability in the Layer 2 punt code of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a queue wedge on an interface that receives specific Layer 2 frames, resulting in a denial of service (DoS) condition. This vulnerability is due to improper handling of certain Layer 2 frames. An attacker could exploit this vulner
nvd
CVE-2022-20694P4MEDIUMCVSS 6.8v3.7.0bsv3.7.0s+232 more2022-04-15
CVE-2022-20694 [MEDIUM] CWE-617 CVE-2022-20694: A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Ci A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the Border Gateway Protocol (BGP) process to crash, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of a specific RPKI t
nvd
CVE-2019-12666P4MEDIUMCVSS 6.7≥ 16.4, < 16.6.5≥ 16.7, < 16.9.3+1 more2019-09-25
CVE-2019-12666 [MEDIUM] CWE-22 CVE-2019-12666: A vulnerability in the Guest Shell of Cisco IOS XE Software could allow an authenticated, local atta A vulnerability in the Guest Shell of Cisco IOS XE Software could allow an authenticated, local attacker to perform directory traversal on the base Linux operating system of Cisco IOS XE Software. The vulnerability is due to incomplete validation of certain commands. An attacker could exploit this vulnerability by first accessing the Guest Shell and
nvd
CVE-2023-20100P3MEDIUMCVSS 6.8v17.10.12023-03-23
CVE-2023-20100 [MEDIUM] CWE-694 CVE-2023-20100: A vulnerability in the access point (AP) joining process of the Control and Provisioning of Wireless A vulnerability in the access point (AP) joining process of the Control and Provisioning of Wireless Access Points (CAPWAP) protocol of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to a logic erro
nvd
CVE-2020-3220P4MEDIUMCVSS 6.8v16.4.1v16.4.2+66 more2020-06-03
CVE-2020-3220 [MEDIUM] CWE-345 CVE-2020-3220: A vulnerability in the hardware crypto driver of Cisco IOS XE Software for Cisco 4300 Series Integra A vulnerability in the hardware crypto driver of Cisco IOS XE Software for Cisco 4300 Series Integrated Services Routers and Cisco Catalyst 9800-L Wireless Controllers could allow an unauthenticated, remote attacker to disconnect legitimate IPsec VPN sessions to an affected device. The vulnerability is due to insufficient verification of authenticity
nvd
CVE-2018-0481P4MEDIUMCVSS 6.7v15.3\(3\)s3.16v16.7\(1\)+1 more2018-10-05
CVE-2018-0481 [MEDIUM] CWE-77 CVE-2018-0481: A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attac A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vulnerability exist because the affected software improperly sanitizes command arguments, failing to prevent access to certain internal data structures
nvd
CVE-2018-0477P4MEDIUMCVSS 6.7v15.3\(3\)s3.16v16.7\(1\)+1 more2018-10-05
CVE-2018-0477 [MEDIUM] CWE-77 CVE-2018-0477: A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attac A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vulnerability exist because the affected software improperly sanitizes command arguments, failing to prevent access to certain internal data structures
nvd
CVE-2018-0184P4MEDIUMCVSS 6.7≥ 16.3, < 16.3.6≥ 16.6, < 16.6.2+3 more2018-03-28
CVE-2018-0184 [MEDIUM] CWE-264 CVE-2018-0184: A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attac A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Linux shell of an affected device and execute arbitrary commands with root privileges on the device. The vulnerability is due to the affected software improperly sanitizing command arguments to prevent access to inte
nvd
Cisco IOS XE vulnerabilities | cvebase