cbcvebase.

Cisco IOS XE vulnerabilities

505 known vulnerabilities affecting cisco/ios_xe.

Total CVEs
505
CISA KEV
27
actively exploited
Public exploits
8
Exploited in wild
33
Severity breakdown
CRITICAL20HIGH323MEDIUM161LOW1

Vulnerabilities

Page 3 of 26
CVE-2017-12236P2CRITICALCVSS 9.8v3.2.0jav3.9.1e+1 more2017-09-29
CVE-2017-12236 [CRITICAL] CWE-287 CVE-2017-12236: A vulnerability in the implementation of the Locator/ID Separation Protocol (LISP) in Cisco IOS XE 3 A vulnerability in the implementation of the Locator/ID Separation Protocol (LISP) in Cisco IOS XE 3.2 through 16.5 could allow an unauthenticated, remote attacker using an x tunnel router to bypass authentication checks performed when registering an Endpoint Identifier (EID) to a Routing Locator (RLOC) in the map server/map resolver (MS/MR). The
nvd
CVE-2021-1384P2HIGHCVSS 7.2fixed in 16.6.9≥ 16.9.0, < 16.9.7+3 more2021-03-24
CVE-2021-1384 [HIGH] CWE-77 CVE-2021-1384: A vulnerability in Cisco IOx application hosting environment of Cisco IOS XE Software could allow an A vulnerability in Cisco IOx application hosting environment of Cisco IOS XE Software could allow an authenticated, remote attacker to inject commands into the underlying operating system as the root user. This vulnerability is due to incomplete validation of fields in the application packages loaded onto IOx. An attacker could exploit this vulnerability
nvd
CVE-2021-34770P2CRITICALCVSS 9.8v3.15.1xbsv3.15.2xbs+26 more2021-09-23
CVE-2021-34770 [CRITICAL] CWE-122 CVE-2021-34770: A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processi A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Controllers could allow an unauthenticated, remote attacker to execute arbitrary code with administrative privileges or cause a denial of service (DoS) condition on an affected devi
nvd
CVE-2016-6441P2CRITICALCVSS 9.8v3.17.0sv3.17.1s+5 more2016-11-03
CVE-2016-6441 [CRITICAL] CWE-119 CVE-2016-6441: A vulnerability in the Transaction Language 1 (TL1) code of Cisco ASR 900 Series routers could allow A vulnerability in the Transaction Language 1 (TL1) code of Cisco ASR 900 Series routers could allow an unauthenticated, remote attacker to cause a reload of, or remotely execute code on, the affected system. This vulnerability affects Cisco ASR 900 Series Aggregation Services Routers (ASR902, ASR903, and ASR907) that are running the following relea
nvd
CVE-2025-20221P2CRITICALCVSS 9.1v16.12.13v17.1.1+87 more2025-05-07
CVE-2025-20221 [CRITICAL] CWE-200 CVE-2025-20221: A vulnerability in the packet filtering features of Cisco IOS XE SD-WAN Software could allow an unau A vulnerability in the packet filtering features of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to bypass Layer 3 and Layer 4 traffic filters. This vulnerability is due to improper traffic filtering conditions on an affected device. An attacker could exploit this vulnerability by sending a crafted packet to the aff
nvd
CVE-2025-20186P2HIGHCVSS 8.8v16.12.4v16.12.4a+74 more2025-05-07
CVE-2025-20186 [HIGH] CWE-78 CVE-2025-20186: A vulnerability in the web-based management interface of the Wireless LAN Controller feature of Cisc A vulnerability in the web-based management interface of the Wireless LAN Controller feature of Cisco IOS XE Software could allow an authenticated, remote attacker with a lobby ambassador user account to perform a command injection attack against an affected device. This vulnerability is due to insufficient input validation. An attacker could exploit t
nvd
CVE-2018-0472P2HIGHCVSS 8.6v15.5\(3\)s5.36v16.8.12018-10-05
CVE-2018-0472 [HIGH] CWE-20 CVE-2018-0472: A vulnerability in the IPsec driver code of multiple Cisco IOS XE Software platforms and the Cisco A A vulnerability in the IPsec driver code of multiple Cisco IOS XE Software platforms and the Cisco ASA 5500-X Series Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause the device to reload. The vulnerability is due to improper processing of malformed IPsec Authentication Header (AH) or Encapsulating Security Payloa
nvd
CVE-2020-3229P2HIGHCVSS 8.8v16.2.2v16.3.1+81 more2020-06-03
CVE-2020-3229 [HIGH] CWE-264 CVE-2020-3229: A vulnerability in Role Based Access Control (RBAC) functionality of Cisco IOS XE Web Management Sof A vulnerability in Role Based Access Control (RBAC) functionality of Cisco IOS XE Web Management Software could allow a Read-Only authenticated, remote attacker to execute commands or configuration changes as an Admin user. The vulnerability is due to incorrect handling of RBAC for the administration GUI. An attacker could exploit this vulnerability by
nvd
CVE-2023-20076P2HIGHCVSS 8.8fixed in 17.6.5≥ 17.9.0, < 17.9.2+1 more2023-02-12
CVE-2023-20076 [HIGH] CWE-233 CVE-2023-20076: A vulnerability in the Cisco IOx application hosting environment could allow an authenticated, remot A vulnerability in the Cisco IOx application hosting environment could allow an authenticated, remote attacker to execute arbitrary commands as root on the underlying host operating system. This vulnerability is due to incomplete sanitization of parameters that are passed in for activation of an application. An attacker could exploit this vulnerabilit
nvd
CVE-2017-6741P2HIGHCVSS 8.8v2.2.0v2.2.1+110 more2017-07-17
CVE-2017-6741 [HIGH] CWE-119 CVE-2017-6741: A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. An attacker could exploit this vulnerability by sending a crafted SNMP packet to the affected device. The vulnerability is due to a buffer overflow in the affected code area. The vulnerabili
nvd
CVE-2019-1753P2HIGHCVSS 8.8v3.2.0jav3.6.10e+13 more2019-03-28
CVE-2019-1753 [HIGH] CWE-20 CVE-2019-1753: A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated but unprivileged A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated but unprivileged (level 1), remote attacker to run privileged Cisco IOS commands by using the web UI. The vulnerability is due to a failure to validate and sanitize input in Web Services Management Agent (WSMA) functions. An attacker could exploit this vulnerability by su
nvd
CVE-2020-3219P2HIGHCVSS 8.8v16.1.1v16.1.2+90 more2020-06-03
CVE-2020-3219 [HIGH] CWE-77 CVE-2020-3219: A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to inject and execute arbitrary commands with administrative privileges on the underlying operating system of an affected device. The vulnerability is due to insufficient validation of user-supplied input to the web UI. An attacker could exploit this vuln
nvd
CVE-2017-3858P2HIGHCVSS 8.8v16.2v16.2.12017-03-22
CVE-2017-3858 [HIGH] CWE-20 CVE-2017-3858: A vulnerability in the web framework of Cisco IOS XE Software could allow an authenticated, remote a A vulnerability in the web framework of Cisco IOS XE Software could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due to insufficient input validation of HTTP parameters supplied by the user. An attacker could exploit this vulnerability by authenticating to the device and
nvd
CVE-2021-1619P2CRITICALCVSS 9.1v16.3.1v16.3.1a+117 more2021-09-23
CVE-2021-1619 [CRITICAL] CWE-824 CVE-2021-1619: A vulnerability in the authentication, authorization, and accounting (AAA) function of Cisco IOS XE A vulnerability in the authentication, authorization, and accounting (AAA) function of Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass NETCONF or RESTCONF authentication and do either of the following: Install, manipulate, or delete the configuration of an affected device Cause memory corruption that results in a denia
nvd
CVE-2019-1754P3HIGHCVSS 8.8v3.2.0jav16.7.1+14 more2019-03-28
CVE-2019-1754 [HIGH] CWE-20 CVE-2019-1754: A vulnerability in the authorization subsystem of Cisco IOS XE Software could allow an authenticated A vulnerability in the authorization subsystem of Cisco IOS XE Software could allow an authenticated but unprivileged (level 1), remote attacker to run privileged Cisco IOS commands by using the web UI. The vulnerability is due to improper validation of user privileges of web UI users. An attacker could exploit this vulnerability by submitting a maliciou
nvd
CVE-2018-0152P3HIGHCVSS 8.8v16.1.12018-03-28
CVE-2018-0152 [HIGH] CWE-264 CVE-2018-0152: A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an aut A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker to gain elevated privileges on an affected device. The vulnerability exists because the affected software does not reset the privilege level for each web UI session. An attacker who has valid credentials for an affected device
nvd
CVE-2024-20510P3CRITICALCVSS 9.3v16.3.1v16.3.1a+195 more2024-09-25
CVE-2024-20510 [CRITICAL] CWE-863 CVE-2024-20510: A vulnerability in the Central Web Authentication (CWA) feature of Cisco IOS XE Software for Wireles A vulnerability in the Central Web Authentication (CWA) feature of Cisco IOS XE Software for Wireless Controllers could allow an unauthenticated, adjacent attacker to bypass the pre-authentication access control list (ACL), which could allow access to network resources before user authentication. This vulnerability is due to a logic error when act
nvd
CVE-2023-20231P2HIGHCVSS 8.8v16.12.4v16.12.4a+65 more2023-09-27
CVE-2023-20231 [HIGH] CWE-78 CVE-2023-20231: A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to perform an injection attack against an affected device. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web UI. A successful exploit could allow the attacker to
nvd
CVE-2017-12230P3HIGHCVSS 8.8v16.2.12017-09-29
CVE-2017-12230 [HIGH] CWE-264 CVE-2017-12230: A vulnerability in the web-based user interface (web UI) of Cisco IOS XE 16.2 could allow an authent A vulnerability in the web-based user interface (web UI) of Cisco IOS XE 16.2 could allow an authenticated, remote attacker to elevate their privileges on an affected device. The vulnerability is due to incorrect default permission settings for new users who are created by using the web UI of the affected software. An attacker could exploit this vulne
nvd
CVE-2023-20235P3HIGHCVSS 8.8fixed in 17.3.12023-10-04
CVE-2023-20235 [HIGH] CWE-552 CVE-2023-20235: A vulnerability in the on-device application development workflow feature for the Cisco IOx applicat A vulnerability in the on-device application development workflow feature for the Cisco IOx application hosting infrastructure in Cisco IOS XE Software could allow an authenticated, remote attacker to access the underlying operating system as the root user. This vulnerability exists because Docker containers with the privileged runtime option are not
nvd
Cisco IOS XE vulnerabilities | cvebase