cbcvebase.

Cisco IOS XR vulnerabilities

174 known vulnerabilities affecting cisco/ios_xr.

Total CVEs
174
CISA KEV
9
actively exploited
Public exploits
3
Exploited in wild
11
Severity breakdown
CRITICAL3HIGH91MEDIUM77LOW3

Vulnerabilities

Page 4 of 9
CVE-2016-1456P3HIGHCVSS 7.8v6.0.0v6.0.1+1 more2016-07-15
CVE-2016-1456 [HIGH] CWE-264 CVE-2016-1456: The CLI in Cisco IOS XR 6.x through 6.0.1 allows local users to execute arbitrary OS commands in a p The CLI in Cisco IOS XR 6.x through 6.0.1 allows local users to execute arbitrary OS commands in a privileged context by leveraging unspecified container access, aka Bug ID CSCuz62721.
nvd
CVE-2021-34728P3HIGHCVSS 7.8fixed in 7.3.2≥ 7.4.0, < 7.4.12021-09-09
CVE-2021-34728 [HIGH] CWE-78 CVE-2021-34728: Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local att Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker with a low-privileged account to elevate privileges on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-34719P3HIGHCVSS 7.8fixed in 7.3.2≥ 7.4.0, ≤ 7.4.1+1 more2021-09-09
CVE-2021-34719 [HIGH] CWE-78 CVE-2021-34719: Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local att Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker with a low-privileged account to elevate privileges on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-1389P3MEDIUMCVSS 6.5fixed in 6.6.3v7.1.0+1 more2021-02-04
CVE-2021-1389 [MEDIUM] CWE-284 CVE-2021-1389: A vulnerability in the IPv6 traffic processing of Cisco IOS XR Software and Cisco NX-OS Software for A vulnerability in the IPv6 traffic processing of Cisco IOS XR Software and Cisco NX-OS Software for certain Cisco devices could allow an unauthenticated, remote attacker to bypass an IPv6 access control list (ACL) that is configured for an interface of an affected device. The vulnerability is due to improper processing of IPv6 traffic that is sent th
nvd
CVE-2010-0576P3HIGHCVSS 7.8v3.2v3.2.1+13 more2010-03-25
CVE-2010-0576 [HIGH] CVE-2010-0576: Unspecified vulnerability in Cisco IOS 12.0 through 12.4, IOS XE 2.1.x through 2.3.x before 2.3.2, a Unspecified vulnerability in Cisco IOS 12.0 through 12.4, IOS XE 2.1.x through 2.3.x before 2.3.2, and IOS XR 3.2.x through 3.4.3, when Multiprotocol Label Switching (MPLS) and Label Distribution Protocol (LDP) are enabled, allows remote attackers to cause a denial of service (device reload or process restart) via a crafted LDP packet, aka Bug IDs CSCsz45567 an
nvd
CVE-2012-2488P3HIGHCVSS 7.8≤ 4.2.0v4.0.3+5 more2012-05-31
CVE-2012-2488 [HIGH] CWE-20 CVE-2012-2488: Cisco IOS XR before 4.2.1 on ASR 9000 series devices and CRS series devices allows remote attackers Cisco IOS XR before 4.2.1 on ASR 9000 series devices and CRS series devices allows remote attackers to cause a denial of service (packet transmission outage) via a crafted packet, aka Bug IDs CSCty94537 and CSCtz62593.
nvd
CVE-2016-1426P3HIGHCVSS 7.5v5.0.0v5.0.1+12 more2016-07-15
CVE-2016-1426 [HIGH] CWE-399 CVE-2016-1426: Cisco IOS XR 5.x through 5.2.5 on NCS 6000 devices allows remote attackers to cause a denial of serv Cisco IOS XR 5.x through 5.2.5 on NCS 6000 devices allows remote attackers to cause a denial of service (timer consumption and Route Processor reload) via crafted SSH traffic, aka Bug ID CSCux76819.
nvd
CVE-2015-6432P3HIGHCVSS 7.5v4.2.0v4.3.0+7 more2016-01-05
CVE-2015-6432 [HIGH] CWE-399 CVE-2015-6432: Cisco IOS XR 4.2.0, 4.3.0, 5.0.0, 5.1.0, 5.2.0, 5.2.2, 5.2.4, 5.3.0, and 5.3.2 does not properly res Cisco IOS XR 4.2.0, 4.3.0, 5.0.0, 5.1.0, 5.2.0, 5.2.2, 5.2.4, 5.3.0, and 5.3.2 does not properly restrict the number of Path Computation Elements (PCEs) for OSPF LSA opaque area updates, which allows remote attackers to cause a denial of service (device reload) via a crafted update, aka Bug ID CSCuw83486.
nvd
CVE-2026-20074P3HIGHCVSS 7.4≥ 7.8.0, < 25.2.2v25.3.02026-03-11
CVE-2026-20074 [HIGH] CWE-1287 CVE-2026-20074: A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) multi-instance routing fea A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) multi-instance routing feature of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the IS-IS process to restart unexpectedly. This vulnerability is due to insufficient input validation of ingress IS-IS packets. An attacker could exploit this vul
nvd
CVE-2016-6355P3HIGHCVSS 7.5v5.1.0v5.1.1+12 more2016-08-23
CVE-2016-6355 [HIGH] CWE-399 CVE-2016-6355: Memory leak in Cisco IOS XR 5.1.x through 5.1.3, 5.2.x through 5.2.5, and 5.3.x through 5.3.2 on ASR Memory leak in Cisco IOS XR 5.1.x through 5.1.3, 5.2.x through 5.2.5, and 5.3.x through 5.3.2 on ASR 9001 devices allows remote attackers to cause a denial of service (control-plane protocol outage) via crafted fragmented packets, aka Bug ID CSCux26791.
nvd
CVE-2016-9215P3HIGHCVSS 7.8v6.1.12016-12-14
CVE-2016-9215 [HIGH] CWE-264 CVE-2016-9215: A vulnerability in Cisco IOS XR Software could allow an authenticated, local attacker to log in to t A vulnerability in Cisco IOS XR Software could allow an authenticated, local attacker to log in to the device with the privileges of the root user. More Information: CSCva38434. Known Affected Releases: 6.1.1.BASE.
nvd
CVE-2021-34714P3HIGHCVSS 7.4≤ 8.4\(3.115\)≤ 7.0\(3\)i7\(9\)+3 more2021-09-23
CVE-2021-34714 [HIGH] CWE-20 CVE-2021-34714: A vulnerability in the Unidirectional Link Detection (UDLD) feature of Cisco FXOS Software, Cisco IO A vulnerability in the Unidirectional Link Detection (UDLD) feature of Cisco FXOS Software, Cisco IOS Software, Cisco IOS XE Software, Cisco IOS XR Software, and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause an affected device to reload. This vulnerability is due to improper input validation of the UDLD packets. An att
nvd
CVE-2024-20327P3HIGHCVSS 7.4fixed in 7.9.21≥ 7.10, < 7.10.1+1 more2024-03-13
CVE-2024-20327 [HIGH] CWE-20 CVE-2024-20327: A vulnerability in the PPP over Ethernet (PPPoE) termination feature of Cisco IOS XR Software for Ci A vulnerability in the PPP over Ethernet (PPPoE) termination feature of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, adjacent attacker to crash the ppp_ma process, resulting in a denial of service (DoS) condition. This vulnerability is due to the improper handling of malformed PPPoE packet
nvd
CVE-2024-20406P3HIGHCVSS 7.4≥ 6.8.1, < 7.0.0≥ 7.4.1, < 7.11.22024-09-11
CVE-2024-20406 [HIGH] CWE-20 CVE-2024-20406: A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (I A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input validation of ingress IS-IS packets. An attacke
nvd
CVE-2021-1440P3MEDIUMCVSS 6.8≥ 4.3.0, < 7.3.12024-11-18
CVE-2021-1440 [MEDIUM] CWE-617 CVE-2021-1440: A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Ci A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause the Border Gateway Protocol (BGP) process to crash, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of a specific RPKI to
nvd
CVE-2011-2549P3HIGHCVSS 7.8v4.1.02011-07-28
CVE-2011-2549 [HIGH] CVE-2011-2549: Unspecified vulnerability in Cisco IOS XR 4.1.x before 4.1.1 on Cisco Aggregation Services Routers ( Unspecified vulnerability in Cisco IOS XR 4.1.x before 4.1.1 on Cisco Aggregation Services Routers (ASR) 9000 series devices allows remote attackers to cause a denial of service (line-card reload) via an IPv4 packet, aka Bug ID CSCtr26695.
nvd
CVE-2009-0637P3HIGHCVSS 7.1v12.42009-03-27
CVE-2009-0637 [HIGH] CWE-264 CVE-2009-0637: The SCP server in Cisco IOS 12.2 through 12.4, when Role-Based CLI Access is enabled, does not enfor The SCP server in Cisco IOS 12.2 through 12.4, when Role-Based CLI Access is enabled, does not enforce the CLI view configuration for file transfers, which allows remote authenticated users with an attached CLI view to (1) read or (2) overwrite arbitrary files via an SCP command.
nvd
CVE-2021-34713P3HIGHCVSS 7.4≥ 6.4, < 6.6.3≥ 6.7, < 6.7.1+2 more2021-09-09
CVE-2021-34713 [HIGH] CWE-399 CVE-2021-34713: A vulnerability in the Layer 2 punt code of Cisco IOS XR Software running on Cisco ASR 9000 Series A A vulnerability in the Layer 2 punt code of Cisco IOS XR Software running on Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, adjacent attacker to cause the affected line card to reboot. This vulnerability is due to incorrect handling of specific Ethernet frames that cause a spin loop that can make the network process
nvd
CVE-2024-20317P3HIGHCVSS 7.4v7.7.1v7.7.2+8 more2024-09-11
CVE-2024-20317 [HIGH] CWE-684 CVE-2024-20317: A vulnerability in the handling of specific Ethernet frames by Cisco IOS XR Software for various Cis A vulnerability in the handling of specific Ethernet frames by Cisco IOS XR Software for various Cisco Network Convergence System (NCS) platforms could allow an unauthenticated, adjacent attacker to cause critical priority packets to be dropped, resulting in a denial of service (DoS) condition. This vulnerability is due to incorrect classification of
nvd
CVE-2025-20141P3HIGHCVSS 7.4v7.9.22025-03-12
CVE-2025-20141 [HIGH] CWE-770 CVE-2025-20141: A vulnerability in the handling of specific packets that are punted from a line card to a route proc A vulnerability in the handling of specific packets that are punted from a line card to a route processor in Cisco IOS XR Software Release 7.9.2 could allow an unauthenticated, adjacent attacker to cause control plane traffic to stop working on multiple Cisco IOS XR platforms. This vulnerability is due to incorrect handling of packets that are punted
nvd
Cisco IOS XR vulnerabilities | cvebase