cbcvebase.

Cisco IOS XE vulnerabilities

505 known vulnerabilities affecting cisco/ios_xe.

Total CVEs
505
CISA KEV
27
actively exploited
Public exploits
8
Exploited in wild
33
Severity breakdown
CRITICAL20HIGH323MEDIUM161LOW1

Vulnerabilities

Page 6 of 26
CVE-2024-20480P3HIGHCVSS 8.6v16.1.1v16.1.2+203 more2024-09-25
CVE-2024-20480 [HIGH] CWE-783 CVE-2024-20480: A vulnerability in the DHCP Snooping feature of Cisco IOS XE Software on Software-Defined Access (SD A vulnerability in the DHCP Snooping feature of Cisco IOS XE Software on Software-Defined Access (SD-Access) fabric edge nodes could allow an unauthenticated, remote attacker to cause high CPU utilization on an affected device, resulting in a denial of service (DoS) condition that requires a manual reload to recover. This vulnerability is due to impro
nvd
CVE-2025-20162P3HIGHCVSS 8.6v16.11.1v16.11.1a+91 more2025-05-07
CVE-2025-20162 [HIGH] CWE-400 CVE-2025-20162: A vulnerability in the DHCP snooping security feature of Cisco IOS XE Software could allow an unauth A vulnerability in the DHCP snooping security feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a full interface queue wedge, which could result in a denial of service (DoS) condition. This vulnerability is due to improper handling of DHCP request packets. An attacker could exploit this vulnerability by sending
nvd
CVE-2015-6280P3CRITICALCVSS 9.3v3.6e.0v3.6e.0a+24 more2015-09-28
CVE-2015-6280 [CRITICAL] CWE-287 CVE-2015-6280: The SSHv2 functionality in Cisco IOS 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.6E before 3.6.3E, 3.7E The SSHv2 functionality in Cisco IOS 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.6E before 3.6.3E, 3.7E before 3.7.1E, 3.10S before 3.10.6S, 3.11S before 3.11.4S, 3.12S before 3.12.3S, 3.13S before 3.13.3S, and 3.14S before 3.14.1S does not properly implement RSA authentication, which allows remote attackers to obtain login access by leveraging knowledge
nvd
CVE-2019-1755P3HIGHCVSS 7.2v3.2.0jav3.6.10e+36 more2019-03-28
CVE-2019-1755 [HIGH] CWE-20 CVE-2019-1755: A vulnerability in the Web Services Management Agent (WSMA) function of Cisco IOS XE Software could A vulnerability in the Web Services Management Agent (WSMA) function of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary Cisco IOS commands as a privilege level 15 user. The vulnerability occurs because the affected software improperly sanitizes user-supplied input. An attacker could exploit this vulnerability by su
nvd
CVE-2020-3212P3HIGHCVSS 7.2v16.11.1v16.11.1a+4 more2020-06-03
CVE-2020-3212 [HIGH] CWE-77 CVE-2020-3212: A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system of an affected device. The vulnerability is due to improper input sanitization. An attacker could exploit this vulnerability by uploading a crafted file to the web UI of
nvd
CVE-2018-0157P3HIGHCVSS 8.6v16.4.1v16.4.2+4 more2018-03-28
CVE-2018-0157 [HIGH] CWE-19 CVE-2018-0157: A vulnerability in the Zone-Based Firewall code of Cisco IOS XE Software could allow an unauthentica A vulnerability in the Zone-Based Firewall code of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a device to reload. The vulnerability is due to the way fragmented packets are handled in the firewall code. An attacker could exploit this vulnerability by sending fragmented IP Version 4 or IP Version 6 packets through an af
nvd
CVE-2019-1747P3HIGHCVSS 8.6v16.10.12019-03-28
CVE-2019-1747 [HIGH] CWE-20 CVE-2019-1747: A vulnerability in the implementation of the Short Message Service (SMS) handling functionality of C A vulnerability in the implementation of the Short Message Service (SMS) handling functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to improper processing of SMS protocol data units (PDUs) that are enc
nvd
CVE-2019-1740P3HIGHCVSS 8.6v3.2.0jav3.16.0as+56 more2019-03-28
CVE-2019-1740 [HIGH] CWE-20 CVE-2019-1740: A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software an A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability are due to a parsing issue on DNS packets. An attacker could exploit this vulnerability by sending crafted DNS packets through
nvd
CVE-2019-12663P3HIGHCVSS 8.6v16.6.4v16.12.12019-09-25
CVE-2019-12663 [HIGH] CWE-20 CVE-2019-12663: A vulnerability in the Cisco TrustSec (CTS) Protected Access Credential (PAC) provisioning module of A vulnerability in the Cisco TrustSec (CTS) Protected Access Credential (PAC) provisioning module of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to improper validation of attributes in RADIUS messages. An attacke
nvd
CVE-2020-3408P3HIGHCVSS 8.6v15.8\(3\)m32020-09-24
CVE-2020-3408 [HIGH] CWE-185 CVE-2020-3408: A vulnerability in the Split DNS feature of Cisco IOS Software and Cisco IOS XE Software could allow A vulnerability in the Split DNS feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability occurs because the regular expression (regex) engine that is used with the Split DNS feature of affected releas
nvd
CVE-2020-3407P3HIGHCVSS 8.6v15.8\(3\)m32020-09-24
CVE-2020-3407 [HIGH] CWE-476 CVE-2020-3407: A vulnerability in the RESTCONF and NETCONF-YANG access control list (ACL) function of Cisco IOS XE A vulnerability in the RESTCONF and NETCONF-YANG access control list (ACL) function of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the device to reload. The vulnerability is due to incorrect processing of the ACL that is tied to the RESTCONF or NETCONF-YANG feature. An attacker could exploit this vulnerability by access
nvd
CVE-2020-3359P3HIGHCVSS 8.6v16.12.12020-09-24
CVE-2020-3359 [HIGH] CWE-20 CVE-2020-3359: A vulnerability in the multicast DNS (mDNS) feature of Cisco IOS XE Software for Cisco Catalyst 9800 A vulnerability in the multicast DNS (mDNS) feature of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper validation of mDNS packets. An attacker could exploit this vulnerability by sending a crafted mD
nvd
CVE-2019-1904P3HIGHCVSS 8.8v16.1.3v16.2.1+1 more2019-06-21
CVE-2019-1904 [HIGH] CWE-352 CVE-2019-1904: A vulnerability in the web-based UI (web UI) of Cisco IOS XE Software could allow an unauthenticated A vulnerability in the web-based UI (web UI) of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web UI on an affected device. An attacker could exploit this vulnerability by persuading a use
nvd
CVE-2020-3492P3HIGHCVSS 8.6v16.12.12020-09-24
CVE-2020-3492 [HIGH] CWE-20 CVE-2020-3492: A vulnerability in the Flexible NetFlow Version 9 packet processor of Cisco IOS XE Software for Cisc A vulnerability in the Flexible NetFlow Version 9 packet processor of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers and Cisco AireOS Software for Cisco Wireless LAN Controllers (WLC) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to i
nvd
CVE-2020-3399P3HIGHCVSS 8.6v16.12v16.12.1s+1 more2020-09-24
CVE-2020-3399 [HIGH] CWE-126 CVE-2020-3399: A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processi A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition of an affected device. The vulnerability is due to insufficient input validation d
nvd
CVE-2021-1624P3HIGHCVSS 8.6≤ 17.3.32021-09-23
CVE-2021-1624 [HIGH] CWE-399 CVE-2021-1624: A vulnerability in the Rate Limiting Network Address Translation (NAT) feature of Cisco IOS XE Softw A vulnerability in the Rate Limiting Network Address Translation (NAT) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause high CPU utilization in the Cisco QuantumFlow Processor of an affected device, resulting in a denial of service (DoS) condition. This vulnerability is due to mishandling of the rate limiting fea
nvd
CVE-2022-20682P3HIGHCVSS 8.6v3.15.1xbsv3.15.2xbs+60 more2022-04-15
CVE-2022-20682 [HIGH] CWE-690 CVE-2022-20682: A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processi A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to inadequate input validation of
nvd
CVE-2021-1565P3HIGHCVSS 8.6v3.15.1xbsv3.15.2xbs+4 more2021-09-23
CVE-2021-1565 [HIGH] CWE-415 CVE-2021-1565: Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. These vulnerabilities are due to insufficient vali
nvd
CVE-2023-20072P3HIGHCVSS 8.6v17.9.1v17.9.1a+1 more2023-03-23
CVE-2023-20072 [HIGH] CWE-20 CVE-2023-20072: A vulnerability in the fragmentation handling code of tunnel protocol packets in Cisco IOS XE Softwa A vulnerability in the fragmentation handling code of tunnel protocol packets in Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected system to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to the improper handling of large fragmented tunnel protocol packets. One example of a t
nvd
CVE-2021-1223P3HIGHCVSS 7.5fixed in 17.4.12021-01-13
CVE-2021-1223 [HIGH] CWE-693 CVE-2021-1223: Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could all Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrect handling of an HTTP range header. An attacker could exploit this vulnerability by sending crafted HTTP packets through an affected de
nvd
Cisco IOS XE vulnerabilities | cvebase