Cisco IOS XE vulnerabilities
505 known vulnerabilities affecting cisco/ios_xe.
Total CVEs
505
CISA KEV
27
actively exploited
Public exploits
8
Exploited in wild
33
Severity breakdown
CRITICAL20HIGH323MEDIUM161LOW1
Vulnerabilities
Page 2 of 26
CVE-2018-0158P2HIGHCVSS 8.6KEVv15.5\(3\)s1.1v15.5\(3\)s1.2+8 more2018-03-28
CVE-2018-0158 [HIGH] CWE-20 CVE-2018-0158: A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisc
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a memory leak or a reload of an affected device that leads to a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certain IKEv2 packets. An atta
nvd
CVE-2018-0159P2HIGHCVSS 7.5KEVv15.3\(3\)s2018-03-28
CVE-2018-0159 [HIGH] CWE-20 CVE-2018-0159: A vulnerability in the implementation of Internet Key Exchange Version 1 (IKEv1) functionality in Ci
A vulnerability in the implementation of Internet Key Exchange Version 1 (IKEv1) functionality in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to improper validation of specific IKEv1 packets. A
nvd
CVE-2023-20109P2MEDIUMCVSS 6.6KEVv3.3.0sgv3.3.1sg+362 more2023-09-27
CVE-2023-20109 [MEDIUM] CWE-787 CVE-2023-20109: A vulnerability in the Cisco Group Encrypted Transport VPN (GET VPN) feature of Cisco IOS Software a
A vulnerability in the Cisco Group Encrypted Transport VPN (GET VPN) feature of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker who has administrative control of either a group member or a key server to execute arbitrary code on an affected device or cause the device to crash.
This vulnerability is due to i
nvd
CVE-2017-12319P2MEDIUMCVSS 5.9KEVfixed in 16.32018-03-27
CVE-2017-12319 [MEDIUM] CWE-20 CVE-2017-12319: A vulnerability in the Border Gateway Protocol (BGP) over an Ethernet Virtual Private Network (EVPN)
A vulnerability in the Border Gateway Protocol (BGP) over an Ethernet Virtual Private Network (EVPN) for Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the device to reload, resulting in a denial of service (DoS) condition, or potentially corrupt the BGP routing table, which could result in network instability. The vul
nvd
CVE-2017-12237P2HIGHCVSS 7.5KEV≥ 3.5.0e, ≤ 16.52017-09-29
CVE-2017-12237 [HIGH] CWE-399 CVE-2017-12237: A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS 15.0 through 15.6
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS 15.0 through 15.6 and Cisco IOS XE 3.5 through 16.5 could allow an unauthenticated, remote attacker to cause high CPU utilization, traceback messages, or a reload of an affected device that leads to a denial of service (DoS) condition. The vulnerability is due to how an
nvd
CVE-2017-6627P2HIGHCVSS 7.5KEVv3.14.0sv3.14.1s+34 more2017-09-07
CVE-2017-6627 [HIGH] CWE-399 CVE-2017-6627: A vulnerability in the UDP processing code of Cisco IOS 15.1, 15.2, and 15.4 and IOS XE 3.14 through
A vulnerability in the UDP processing code of Cisco IOS 15.1, 15.2, and 15.4 and IOS XE 3.14 through 3.18 could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP packets, causing an interface queue wedge and a denial of service (DoS) condition. The vulnerability is due to Cisco IOS Software application
nvd
CVE-2017-6663P2MEDIUMCVSS 6.5KEVv3.7.0ev3.7.1e+67 more2017-08-07
CVE-2017-6663 [MEDIUM] CVE-2017-6663: A vulnerability in the Autonomic Networking feature of Cisco IOS Software and Cisco IOS XE Software
A vulnerability in the Autonomic Networking feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause autonomic nodes of an affected system to reload, resulting in a denial of service (DoS) condition. More Information: CSCvd88936. Known Affected Releases: Denali-16.2.1 Denali-16.3.1.
nvd
CVE-2025-20188P1CRITICALCVSS 10.0ExploitedPoCv17.11.1v17.11.99sw+5 more2025-05-07
CVE-2025-20188 [CRITICAL] CWE-798 CVE-2025-20188: A vulnerability in the Out-of-Band Access Point (AP) Image Download, the Clean Air Spectral Recordin
A vulnerability in the Out-of-Band Access Point (AP) Image Download, the Clean Air Spectral Recording, and the client debug bundles features of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, remote attacker to upload arbitrary files to an affected system.
This vulnerability is due to the presence of a har
nvd
CVE-2025-20363P1CRITICALCVSS 9.0Exploited≥ 3.2.0sg, ≤ 17.17.12025-09-25
CVE-2025-20363 [CRITICAL] CWE-122 CVE-2025-20363: A vulnerability in the web services of Cisco Secure Firewall Adaptive Security Appliance (ASA) Softw
A vulnerability in the web services of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Cisco Secure Firewall Threat Defense (FTD) Software, Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, remote attacker (Cisco ASA and FTD Software) or authenticated, remote attacker (Cisco IOS,
nvd
CVE-2018-0150P1CRITICALCVSS 9.8Exploitedv16.5.12018-03-28
CVE-2018-0150 [CRITICAL] CWE-798 CVE-2018-0150: A vulnerability in Cisco IOS XE Software could allow an unauthenticated, remote attacker to log in t
A vulnerability in Cisco IOS XE Software could allow an unauthenticated, remote attacker to log in to a device running an affected release of Cisco IOS XE Software with the default username and password that are used at initial boot, aka a Static Credential Vulnerability. The vulnerability is due to an undocumented user account with privilege level
nvd
CVE-2016-1409P2HIGHCVSS 7.5Exploitedv2.1.0v2.1.1+194 more2016-05-29
CVE-2016-1409 [HIGH] CWE-20 CVE-2016-1409: The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS XE 2.1 through 3.
The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS XE 2.1 through 3.17S, IOS XR 2.0.0 through 5.3.2, and NX-OS allows remote attackers to cause a denial of service (packet-processing outage) via crafted ND messages, aka Bug ID CSCuz66542, as exploited in the wild in May 2016.
nvd
CVE-2018-0160P2MEDIUMCVSS 6.3Exploitedv15.5\(3\)s2018-03-28
CVE-2018-0160 [MEDIUM] CWE-415 CVE-2018-0160: A vulnerability in Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software coul
A vulnerability in Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper management of memory resources, referred to as a double free. An attacker could exploit this vulnerability by sending crafted SN
nvd
CVE-2021-1435P3HIGHCVSS 7.2Exploitedv16.9.1v16.9.1a+34 more2021-03-24
CVE-2021-1435 [HIGH] CWE-22 CVE-2021-1435: A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to inject arbitrary commands that can be executed as the root user. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted request to the web UI of an affected device with arbitrary co
nvd
CVE-2019-12624P2HIGHCVSS 8.8PoC≥ 3.0.xe, ≤ 3.11.xe2019-08-21
CVE-2019-12624 [HIGH] CWE-352 CVE-2019-12624: A vulnerability in the web-based management interface of Cisco IOS XE New Generation Wireless Contro
A vulnerability in the web-based management interface of Cisco IOS XE New Generation Wireless Controller (NGWC) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to insufficient CSRF protections for the web-based management
nvd
CVE-2019-12643P2CRITICALCVSS 10.0v15.5\(3\)s3.16v16.6.52019-08-28
CVE-2019-12643 [CRITICAL] CWE-287 CVE-2019-12643: A vulnerability in the Cisco REST API virtual service container for Cisco IOS XE Software could allo
A vulnerability in the Cisco REST API virtual service container for Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass authentication on the managed Cisco IOS XE device. The vulnerability is due to an improper check performed by the area of code that manages the REST API authentication service. An attacker could exploi
nvd
CVE-2019-12650P2HIGHCVSS 8.8v16.6.5v17.1.12019-09-25
CVE-2019-12650 [HIGH] CWE-77 CVE-2019-12650: Multiple vulnerabilities in the web-based user interface (Web UI) of Cisco IOS XE Software could all
Multiple vulnerabilities in the web-based user interface (Web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker to execute commands with elevated privileges on the affected device. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2017-12229P2CRITICALCVSS 9.8v3.1.3asv3.2.0ja+15 more2017-09-29
CVE-2017-12229 [CRITICAL] CWE-287 CVE-2017-12229: A vulnerability in the REST API of the web-based user interface (web UI) of Cisco IOS XE 3.1 through
A vulnerability in the REST API of the web-based user interface (web UI) of Cisco IOS XE 3.1 through 16.5 could allow an unauthenticated, remote attacker to bypass authentication to the REST API of the web UI of the affected software. The vulnerability is due to insufficient input validation for the REST API of the affected software. An attacker c
nvd
CVE-2021-1451P2CRITICALCVSS 9.8v3.6.0bev3.6.0e+52 more2021-03-24
CVE-2021-1451 [CRITICAL] CWE-119 CVE-2021-1451: A vulnerability in the Easy Virtual Switching System (VSS) feature of Cisco IOS XE Software for Cisc
A vulnerability in the Easy Virtual Switching System (VSS) feature of Cisco IOS XE Software for Cisco Catalyst 4500 Series Switches and Cisco Catalyst 4500-X Series Switches could allow an unauthenticated, remote attacker to execute arbitrary code on the underlying Linux operating system of an affected device. The vulnerability is due to incorrect b
nvd
CVE-2018-0315P2CRITICALCVSS 9.8v16.7.1v16.8.12018-06-07
CVE-2018-0315 [CRITICAL] CWE-119 CVE-2018-0315: A vulnerability in the authentication, authorization, and accounting (AAA) security services of Cisc
A vulnerability in the authentication, authorization, and accounting (AAA) security services of Cisco IOS XE Software could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device or cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to incorrect memory ope
nvd
CVE-2020-3227P2CRITICALCVSS 9.8v3.11.6ev16.3.1+68 more2020-06-03
CVE-2020-3227 [CRITICAL] CWE-264 CVE-2020-3227: A vulnerability in the authorization controls for the Cisco IOx application hosting infrastructure i
A vulnerability in the authorization controls for the Cisco IOx application hosting infrastructure in Cisco IOS XE Software could allow an unauthenticated, remote attacker to execute Cisco IOx API commands without proper authorization. The vulnerability is due to incorrect handling of requests for authorization tokens. An attacker could exploit this
nvd