Cisco IOS XR vulnerabilities
171 known vulnerabilities affecting cisco/ios_xr.
Total CVEs
171
CISA KEV
9
actively exploited
Public exploits
3
Exploited in wild
10
Severity breakdown
CRITICAL3HIGH88MEDIUM77LOW3
Vulnerabilities
Page 3 of 9
CVE-2021-34714HIGHCVSS 7.4≤ 8.4\(3.115\)≤ 7.0\(3\)i7\(9\)+3 more2021-09-23
CVE-2021-34714 [HIGH] CWE-20 CVE-2021-34714: A vulnerability in the Unidirectional Link Detection (UDLD) feature of Cisco FXOS Software, Cisco IO
A vulnerability in the Unidirectional Link Detection (UDLD) feature of Cisco FXOS Software, Cisco IOS Software, Cisco IOS XE Software, Cisco IOS XR Software, and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause an affected device to reload. This vulnerability is due to improper input validation of the UDLD packets. An att
nvd
CVE-2021-34728HIGHCVSS 7.8fixed in 7.3.2≥ 7.4.0, < 7.4.12021-09-09
CVE-2021-34728 [HIGH] CWE-78 CVE-2021-34728: Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local att
Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker with a low-privileged account to elevate privileges on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-34719HIGHCVSS 7.8fixed in 7.3.2≥ 7.4.0, ≤ 7.4.1+1 more2021-09-09
CVE-2021-34719 [HIGH] CWE-78 CVE-2021-34719: Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local att
Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker with a low-privileged account to elevate privileges on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-34737HIGHCVSS 7.5fixed in 7.3.2≥ 7.4.0, ≤ 7.4.1+1 more2021-09-09
CVE-2021-34737 [HIGH] CWE-476 CVE-2021-34737: A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow a
A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to trigger a crash of the dhcpd process, resulting in a denial of service (DoS) condition. This vulnerability exists because certain DHCPv4 messages are improperly validated when they are processed by an affected devic
nvd
CVE-2021-34713HIGHCVSS 7.4≥ 6.4, < 6.6.3≥ 6.7, < 6.7.1+2 more2021-09-09
CVE-2021-34713 [HIGH] CWE-399 CVE-2021-34713: A vulnerability in the Layer 2 punt code of Cisco IOS XR Software running on Cisco ASR 9000 Series A
A vulnerability in the Layer 2 punt code of Cisco IOS XR Software running on Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, adjacent attacker to cause the affected line card to reboot. This vulnerability is due to incorrect handling of specific Ethernet frames that cause a spin loop that can make the network process
nvd
CVE-2021-34720HIGHCVSS 8.6fixed in 6.2.3≥ 6.3.0, < 6.3.2+1 more2021-09-09
CVE-2021-34720 [HIGH] CWE-771 CVE-2021-34720: A vulnerability in the IP Service Level Agreements (IP SLA) responder and Two-Way Active Measurement
A vulnerability in the IP Service Level Agreements (IP SLA) responder and Two-Way Active Measurement Protocol (TWAMP) features of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause device packet memory to become exhausted or cause the IP SLA process to crash, resulting in a denial of service (DoS) condition. This vulnerabil
nvd
CVE-2021-34718HIGHCVSS 8.1fixed in 7.3.2≥ 7.4.0, < 7.4.12021-09-09
CVE-2021-34718 [HIGH] CWE-88 CVE-2021-34718: A vulnerability in the SSH Server process of Cisco IOS XR Software could allow an authenticated, rem
A vulnerability in the SSH Server process of Cisco IOS XR Software could allow an authenticated, remote attacker to overwrite and read arbitrary files on the local device. This vulnerability is due to insufficient input validation of arguments that are supplied by the user for a specific file transfer method. An attacker with lower-level privileges cou
nvd
CVE-2021-34722MEDIUMCVSS 6.7≥ 7.1.1, < 7.3.2≥ 7.4.0, < 7.4.12021-09-09
CVE-2021-34722 [MEDIUM] CWE-78 CVE-2021-34722: Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local att
Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to gain access to the underlying root shell of an affected device and execute arbitrary commands with root privileges. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-34721MEDIUMCVSS 6.7fixed in 7.3.2≥ 7.4.0, ≤ 7.4.1+1 more2021-09-09
CVE-2021-34721 [MEDIUM] CWE-78 CVE-2021-34721: Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local att
Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to gain access to the underlying root shell of an affected device and execute arbitrary commands with root privileges. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-34771MEDIUMCVSS 5.5fixed in 7.3.22021-09-09
CVE-2021-34771 [MEDIUM] CWE-201 CVE-2021-34771: A vulnerability in the Cisco IOS XR Software CLI could allow an authenticated, local attacker to vie
A vulnerability in the Cisco IOS XR Software CLI could allow an authenticated, local attacker to view more information than their privileges allow. This vulnerability is due to insufficient application of restrictions during the execution of a specific command. An attacker could exploit this vulnerability by running a specific command. A successful
nvd
CVE-2021-34709MEDIUMCVSS 6.4fixed in 7.3.2≥ 7.4.0, < 7.4.12021-09-09
CVE-2021-34709 [MEDIUM] CWE-347 CVE-2021-34709: Multiple vulnerabilities in image verification checks of Cisco Network Convergence System (NCS) 540
Multiple vulnerabilities in image verification checks of Cisco Network Convergence System (NCS) 540 Series Routers, only when running Cisco IOS XR NCS540L software images, and Cisco IOS XR Software for Cisco 8000 Series Routers could allow an authenticated, local attacker to execute arbitrary code on the underlying operating system. For more informat
nvd
CVE-2021-34708MEDIUMCVSS 6.7fixed in 7.3.2≥ 7.4.0, < 7.4.12021-09-09
CVE-2021-34708 [MEDIUM] CWE-347 CVE-2021-34708: Multiple vulnerabilities in image verification checks of Cisco Network Convergence System (NCS) 540
Multiple vulnerabilities in image verification checks of Cisco Network Convergence System (NCS) 540 Series Routers, only when running Cisco IOS XR NCS540L software images, and Cisco IOS XR Software for Cisco 8000 Series Routers could allow an authenticated, local attacker to execute arbitrary code on the underlying operating system. For more informat
nvd
CVE-2021-1485HIGHCVSS 7.8fixed in 7.3.12021-04-08
CVE-2021-1485 [HIGH] CWE-88 CVE-2021-1485: A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to
A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges on the underlying Linux operating system (OS) of an affected device. This vulnerability is due to insufficient input validation of commands that are supplied by the user. An attacker could exp
nvd
CVE-2021-1370HIGHCVSS 7.8fixed in 7.0.12≥ 7.1.0, < 7.2.1+1 more2021-02-04
CVE-2021-1370 [HIGH] CWE-78 CVE-2021-1370: A vulnerability in a CLI command of Cisco IOS XR Software for the Cisco 8000 Series Routers and Netw
A vulnerability in a CLI command of Cisco IOS XR Software for the Cisco 8000 Series Routers and Network Convergence System 540 Series Routers running NCS540L software images could allow an authenticated, local attacker to elevate their privilege to root. To exploit this vulnerability, an attacker would need to have a valid account on an affected device.
nvd
CVE-2021-1243HIGHCVSS 7.5fixed in 6.6.4≥ 7.0.0, < 7.0.2+4 more2021-02-04
CVE-2021-1243 [HIGH] CWE-284 CVE-2021-1243: A vulnerability in the Local Packet Transport Services (LPTS) programming of the SNMP with the manag
A vulnerability in the Local Packet Transport Services (LPTS) programming of the SNMP with the management plane protection feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to allow connections despite the management plane protection that is configured to deny access to the SNMP server of an affected device. This vulnerabi
nvd
CVE-2021-1313HIGHCVSS 7.5≥ 5.0.0, < 5.2.6≥ 5.3.0, < 5.3.42021-02-04
CVE-2021-1313 [HIGH] CWE-399 CVE-2021-1313: Multiple vulnerabilities in the ingress packet processing function of Cisco IOS XR Software could al
Multiple vulnerabilities in the ingress packet processing function of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-1288HIGHCVSS 7.5≥ 5.0.0, < 5.2.6≥ 5.3.0, < 5.3.4+1 more2021-02-04
CVE-2021-1288 [HIGH] CWE-399 CVE-2021-1288: Multiple vulnerabilities in the ingress packet processing function of Cisco IOS XR Software could al
Multiple vulnerabilities in the ingress packet processing function of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-1128MEDIUMCVSS 5.5fixed in 7.1.2v7.2.0+1 more2021-02-04
CVE-2021-1128 [MEDIUM] CWE-201 CVE-2021-1128: A vulnerability in the CLI parser of Cisco IOS XR Software could allow an authenticated, local attac
A vulnerability in the CLI parser of Cisco IOS XR Software could allow an authenticated, local attacker to view more information than their privileges allow. The vulnerability is due to insufficient application of restrictions during the execution of a specific command. An attacker could exploit this vulnerability by using a specific command at the co
nvd
CVE-2021-1244MEDIUMCVSS 6.7fixed in 7.0.12≥ 7.1.0, < 7.2.1+1 more2021-02-04
CVE-2021-1244 [MEDIUM] CWE-347 CVE-2021-1244: Multiple vulnerabilities in Cisco Network Convergence System (NCS) 540 Series Routers, only when run
Multiple vulnerabilities in Cisco Network Convergence System (NCS) 540 Series Routers, only when running Cisco IOS XR NCS540L software images, and Cisco IOS XR Software for the Cisco 8000 Series Routers could allow an authenticated, local attacker to execute unsigned code during the boot process on an affected device. For more information about these
nvd
CVE-2021-1268MEDIUMCVSS 6.5fixed in 6.7.3≥ 7.1.0, < 7.1.3+2 more2021-02-04
CVE-2021-1268 [MEDIUM] CWE-1076 CVE-2021-1268: A vulnerability in the IPv6 protocol handling of the management interfaces of Cisco IOS XR Software
A vulnerability in the IPv6 protocol handling of the management interfaces of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause an IPv6 flood on the management interface network of an affected device. The vulnerability exists because the software incorrectly forwards IPv6 packets that have an IPv6 node-local multicast gr
nvd