Cisco IOS XE vulnerabilities

505 known vulnerabilities affecting cisco/ios_xe.

Total CVEs
505
CISA KEV
27
actively exploited
Public exploits
8
Exploited in wild
28
Severity breakdown
CRITICAL20HIGH323MEDIUM161LOW1

Vulnerabilities

Page 7 of 26
CVE-2021-1622HIGHCVSS 8.6fixed in 16.12.1z1v17.3.1x2021-09-23
CVE-2021-1622 [HIGH] CWE-833 CVE-2021-1622: A vulnerability in the Common Open Policy Service (COPS) of Cisco IOS XE Software for Cisco cBR-8 Co A vulnerability in the Common Open Policy Service (COPS) of Cisco IOS XE Software for Cisco cBR-8 Converged Broadband Routers could allow an unauthenticated, remote attacker to cause resource exhaustion, resulting in a denial of service (DoS) condition. This vulnerability is due to a deadlock condition in the code when processing COPS packets under cert
nvd
CVE-2021-1565HIGHCVSS 8.6v3.15.1xbsv3.15.2xbs+4 more2021-09-23
CVE-2021-1565 [HIGH] CWE-415 CVE-2021-1565: Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. These vulnerabilities are due to insufficient vali
nvd
CVE-2021-1611HIGHCVSS 8.6fixed in 17.3.12021-09-23
CVE-2021-1611 [HIGH] CWE-399 CVE-2021-1611: A vulnerability in Ethernet over GRE (EoGRE) packet processing of Cisco IOS XE Wireless Controller S A vulnerability in Ethernet over GRE (EoGRE) packet processing of Cisco IOS XE Wireless Controller Software for the Cisco Catalyst 9800 Family Wireless Controller, Embedded Wireless Controller, and Embedded Wireless on Catalyst 9000 Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affecte
nvd
CVE-2021-34697HIGHCVSS 8.6≥ 17.3.1, < 17.3.32021-09-23
CVE-2021-34697 [HIGH] CWE-665 CVE-2021-34697: A vulnerability in the Protection Against Distributed Denial of Service Attacks feature of Cisco IOS A vulnerability in the Protection Against Distributed Denial of Service Attacks feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct denial of service (DoS) attacks to or through the affected device. This vulnerability is due to incorrect programming of the half-opened connections limit, TCP SYN flood limit, or T
nvd
CVE-2021-34769HIGHCVSS 7.5v3.15.1xbsv3.15.2xbs+5 more2021-09-23
CVE-2021-34769 [HIGH] CWE-415 CVE-2021-34769: Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. These vulnerabilities are due to insufficient va
nvd
CVE-2021-1620HIGHCVSS 7.7v3.8.0ev3.8.1e+275 more2021-09-23
CVE-2021-1620 [HIGH] CWE-563 CVE-2021-1620: A vulnerability in the Internet Key Exchange Version 2 (IKEv2) support for the AutoReconnect feature A vulnerability in the Internet Key Exchange Version 2 (IKEv2) support for the AutoReconnect feature of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to exhaust the free IP addresses from the assigned local pool. This vulnerability occurs because the code does not release the allocated IP address under certai
nvd
CVE-2021-1616MEDIUMCVSS 4.7fixed in 17.6.12021-09-23
CVE-2021-1616 [MEDIUM] CWE-693 CVE-2021-1616: A vulnerability in the H.323 application level gateway (ALG) used by the Network Address Translation A vulnerability in the H.323 application level gateway (ALG) used by the Network Address Translation (NAT) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass the ALG. This vulnerability is due to insufficient data validation of traffic that is traversing the ALG. An attacker could exploit this vulnerability by s
nvd
CVE-2021-34703MEDIUMCVSS 6.5≤ 16.12.32021-09-23
CVE-2021-34703 [MEDIUM] CWE-456 CVE-2021-34703: A vulnerability in the Link Layer Discovery Protocol (LLDP) message parser of Cisco IOS Software and A vulnerability in the Link Layer Discovery Protocol (LLDP) message parser of Cisco IOS Software and Cisco IOS XE Software could allow an attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition. This vulnerability is due to improper initialization of a buffer. An attacker could exploit this vulnerability
nvd
CVE-2021-34723MEDIUMCVSS 6.7v17.3.1a2021-09-23
CVE-2021-34723 [MEDIUM] CWE-668 CVE-2021-34723: A vulnerability in a specific CLI command that is run on Cisco IOS XE SD-WAN Software could allow an A vulnerability in a specific CLI command that is run on Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the configuration database of an affected device. This vulnerability is due to insufficient validation of specific CLI command parameters. An attacker could exploit this vulnerability by i
nvd
CVE-2021-1625MEDIUMCVSS 5.8fixed in 17.3.22021-09-23
CVE-2021-1625 [MEDIUM] CWE-284 CVE-2021-1625: A vulnerability in the Zone-Based Policy Firewall feature of Cisco IOS XE Software could allow an un A vulnerability in the Zone-Based Policy Firewall feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to prevent the Zone-Based Policy Firewall from correctly classifying traffic. This vulnerability exists because ICMP and UDP responder-to-initiator flows are not inspected when the Zone-Based Policy Firewall has either Uni
nvd
CVE-2021-34705MEDIUMCVSS 5.3v3.7.0bsv3.7.0s+279 more2021-09-23
CVE-2021-34705 [MEDIUM] CWE-232 CVE-2021-34705: A vulnerability in the Voice Telephony Service Provider (VTSP) service of Cisco IOS Software and Cis A vulnerability in the Voice Telephony Service Provider (VTSP) service of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass configured destination patterns and dial arbitrary numbers. This vulnerability is due to insufficient validation of dial strings at Foreign Exchange Office (FXO) interfaces.
nvd
CVE-2021-34729MEDIUMCVSS 6.7≤ 17.3.1a2021-09-23
CVE-2021-34729 [MEDIUM] CWE-77 CVE-2021-34729: A vulnerability in the CLI of Cisco IOS XE SD-WAN Software and Cisco IOS XE Software could allow an A vulnerability in the CLI of Cisco IOS XE SD-WAN Software and Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary commands with elevated privileges on an affected device. This vulnerability is due to insufficient validation of arguments passed to certain CLI commands. An attacker could exploit this vulnerability by
nvd
CVE-2021-34696MEDIUMCVSS 5.8≤ 17.3.22021-09-23
CVE-2021-34696 [MEDIUM] CWE-284 CVE-2021-34696: A vulnerability in the access control list (ACL) programming of Cisco ASR 900 and ASR 920 Series Agg A vulnerability in the access control list (ACL) programming of Cisco ASR 900 and ASR 920 Series Aggregation Services Routers could allow an unauthenticated, remote attacker to bypass a configured ACL. This vulnerability is due to incorrect programming of hardware when an ACL is configured using a method other than the configuration CLI. An attacker
nvd
CVE-2021-1495MEDIUMCVSS 5.3≥ 16.12, < 16.12.5≥ 17.1, < 17.3.3+1 more2021-04-29
CVE-2021-1495 [MEDIUM] CWE-755 CVE-2021-1495: Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could all Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrect handling of specific HTTP header parameters. An attacker could exploit this vulnerability by sending crafted HTTP packets through a
nvd
CVE-2021-1451CRITICALCVSS 9.8v3.6.0bev3.6.0e+52 more2021-03-24
CVE-2021-1451 [CRITICAL] CWE-119 CVE-2021-1451: A vulnerability in the Easy Virtual Switching System (VSS) feature of Cisco IOS XE Software for Cisc A vulnerability in the Easy Virtual Switching System (VSS) feature of Cisco IOS XE Software for Cisco Catalyst 4500 Series Switches and Cisco Catalyst 4500-X Series Switches could allow an unauthenticated, remote attacker to execute arbitrary code on the underlying Linux operating system of an affected device. The vulnerability is due to incorrect b
nvd
CVE-2021-1432HIGHCVSS 7.3v3.15.1xbsv3.15.2xbs+23 more2021-03-24
CVE-2021-1432 [HIGH] CWE-20 CVE-2021-1432: A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attac A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system as the root user. The attacker must be authenticated on the affected device as a low-privileged user to exploit this vulnerability. This vulnerability is due to insufficient validation of
nvd
CVE-2021-1403HIGHCVSS 7.4v3.15.1xbsv3.15.2xbs+121 more2021-03-24
CVE-2021-1403 [HIGH] CWE-345 CVE-2021-1403: A vulnerability in the web UI feature of Cisco IOS XE Software could allow an unauthenticated, remot A vulnerability in the web UI feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site WebSocket hijacking (CSWSH) attack and cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient HTTP protections in the web UI on an affected device. An attacker could ex
nvd
CVE-2021-1446HIGHCVSS 7.5v3.7.0bsv3.7.0s+263 more2021-03-24
CVE-2021-1446 [HIGH] CWE-754 CVE-2021-1446: A vulnerability in the DNS application layer gateway (ALG) functionality used by Network Address Tra A vulnerability in the DNS application layer gateway (ALG) functionality used by Network Address Translation (NAT) in Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to a logic error that occurs when an affected device inspects certain DNS packets. An attacker could ex
nvd
CVE-2021-1392HIGHCVSS 7.8v3.3.0xov3.3.1xo+27 more2021-03-24
CVE-2021-1392 [HIGH] CWE-522 CVE-2021-1392: A vulnerability in the CLI command permissions of Cisco IOS and Cisco IOS XE Software could allow an A vulnerability in the CLI command permissions of Cisco IOS and Cisco IOS XE Software could allow an authenticated, local attacker to retrieve the password for Common Industrial Protocol (CIP) and then remotely configure the device as an administrative user. This vulnerability exists because incorrect permissions are associated with the show cip securit
nvd
CVE-2021-1443HIGHCVSS 7.2v16.9.1v16.9.1a+59 more2021-03-24
CVE-2021-1443 [HIGH] CWE-77 CVE-2021-1443: A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary code with root privileges on the underlying operating system of an affected device. The vulnerability exists because the affected software improperly sanitizes values that are parsed from a specific configuration file. An attacker cou
nvd