cbcvebase.

Cisco IOS XR vulnerabilities

174 known vulnerabilities affecting cisco/ios_xr.

Total CVEs
174
CISA KEV
9
actively exploited
Public exploits
3
Exploited in wild
11
Severity breakdown
CRITICAL3HIGH91MEDIUM77LOW3

Vulnerabilities

Page 8 of 9
CVE-2022-20849P4MEDIUMCVSS 6.1v6.5.1v6.5.2+31 more2024-11-15
CVE-2022-20849 [MEDIUM] CWE-391 CVE-2022-20849: A vulnerability in the Broadband Network Gateway PPP over Ethernet (PPPoE) feature of Cisco IOS A vulnerability in the Broadband Network Gateway PPP over Ethernet (PPPoE) feature of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the PPPoE process to continually crash. This vulnerability exists because the PPPoE feature does not properly handle an error condition within a specific crafted packet sequence. An at
nvd
CVE-2015-4223P4MEDIUMCVSS 5.0v5.1.32015-06-25
CVE-2015-4223 [MEDIUM] CWE-399 CVE-2015-4223: Cisco IOS XR 5.1.3 allows remote attackers to cause a denial of service (process reload) via crafted Cisco IOS XR 5.1.3 allows remote attackers to cause a denial of service (process reload) via crafted MPLS Label Distribution Protocol (LDP) packets, aka Bug ID CSCuu77478.
nvd
CVE-2015-4284P4MEDIUMCVSS 5.0v5.3.02015-07-22
CVE-2015-4284 [MEDIUM] CWE-20 CVE-2015-4284: The Concurrent Data Management Replication process in Cisco IOS XR 5.3.0 on ASR 9000 devices allows The Concurrent Data Management Replication process in Cisco IOS XR 5.3.0 on ASR 9000 devices allows remote attackers to cause a denial of service (BGP process reload) via malformed BGPv4 packets, aka Bug ID CSCur70670.
nvd
CVE-2016-6421P4MEDIUMCVSS 5.3v5.2.22016-10-05
CVE-2016-6421 [MEDIUM] CWE-399 CVE-2016-6421: Cisco IOS XR 5.2.2 allows remote attackers to cause a denial of service (process restart) via a craf Cisco IOS XR 5.2.2 allows remote attackers to cause a denial of service (process restart) via a crafted OSPF Link State Advertisement (LSA) update, aka Bug ID CSCvb05643.
nvd
CVE-2021-1268P4MEDIUMCVSS 6.5fixed in 6.7.3≥ 7.1.0, < 7.1.3+2 more2021-02-04
CVE-2021-1268 [MEDIUM] CWE-1076 CVE-2021-1268: A vulnerability in the IPv6 protocol handling of the management interfaces of Cisco IOS XR Software A vulnerability in the IPv6 protocol handling of the management interfaces of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause an IPv6 flood on the management interface network of an affected device. The vulnerability exists because the software incorrectly forwards IPv6 packets that have an IPv6 node-local multicast gr
nvd
CVE-2014-3379P4MEDIUMCVSS 6.1v2.0v3.0+53 more2014-09-20
CVE-2014-3379 [MEDIUM] CWE-20 CVE-2014-3379: Cisco IOS XR 5.1 and earlier on Network Convergence System 6000 devices allows remote attackers to c Cisco IOS XR 5.1 and earlier on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (NPU and card hang or reload) via a malformed MPLS packet, aka Bug ID CSCuq10466.
nvd
CVE-2015-4191P4MEDIUMCVSS 5.0v5.2.12015-06-19
CVE-2015-4191 [MEDIUM] CWE-399 CVE-2015-4191: Cisco IOS XR 5.2.1 allows remote attackers to cause a denial of service (ipv6_io service reload) via Cisco IOS XR 5.2.1 allows remote attackers to cause a denial of service (ipv6_io service reload) via a malformed IPv6 packet, aka Bug ID CSCuq95565.
nvd
CVE-2015-4285P4MEDIUMCVSS 5.0v5.1.2v5.1.3+2 more2015-07-23
CVE-2015-4285 [MEDIUM] CWE-399 CVE-2015-4285: The Local Packet Transport Services (LPTS) implementation in Cisco IOS XR 5.1.2, 5.1.3, 5.2.1, and 5 The Local Packet Transport Services (LPTS) implementation in Cisco IOS XR 5.1.2, 5.1.3, 5.2.1, and 5.2.2 on ASR9k devices makes incorrect decisions about the opening of TCP and UDP ports during the processing of flow base entries, which allows remote attackers to cause a denial of service (resource consumption) by sending traffic to these ports contin
nvd
CVE-2021-34771P4MEDIUMCVSS 5.5fixed in 7.3.22021-09-09
CVE-2021-34771 [MEDIUM] CWE-201 CVE-2021-34771: A vulnerability in the Cisco IOS XR Software CLI could allow an authenticated, local attacker to vie A vulnerability in the Cisco IOS XR Software CLI could allow an authenticated, local attacker to view more information than their privileges allow. This vulnerability is due to insufficient application of restrictions during the execution of a specific command. An attacker could exploit this vulnerability by running a specific command. A successful
nvd
CVE-2015-0776P4MEDIUMCVSS 5.0v5.0.12015-06-12
CVE-2015-0776 [MEDIUM] CWE-399 CVE-2015-0776: telnetd in Cisco IOS XR 5.0.1 on Network Convergence System 6000 devices allows remote attackers to telnetd in Cisco IOS XR 5.0.1 on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (device reload) via a malformed TELNET packet, aka Bug ID CSCuq31566.
nvd
CVE-2022-20846P4MEDIUMCVSS 4.3v6.5.1v6.5.2+58 more2024-11-15
CVE-2022-20846 [MEDIUM] CWE-120 CVE-2022-20846: A vulnerability in the Cisco&nbsp;Discovery Protocol implementation for Cisco&nbsp;IOS XR Software c A vulnerability in the Cisco Discovery Protocol implementation for Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the Cisco Discovery Protocol process to reload on an affected device. This vulnerability is due to a heap buffer overflow in certain Cisco Discovery Protocol messages. An attacker could exploit this vuln
nvd
CVE-2014-3322P4MEDIUMCVSS 6.1≤ 4.3.2v4.3.0+1 more2014-07-24
CVE-2014-3322 [MEDIUM] CWE-20 CVE-2014-3322: Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of I Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause a denial of service (chip and card hangs) via malformed (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCuo68417.
nvd
CVE-2015-4205P4MEDIUMCVSS 5.7v5.3.12015-06-23
CVE-2015-4205 [MEDIUM] CWE-399 CVE-2015-4205: Cisco IOS XR 5.3.1 on ASR 9000 devices allows remote attackers to cause a denial of service (NPU chi Cisco IOS XR 5.3.1 on ASR 9000 devices allows remote attackers to cause a denial of service (NPU chip reset or line-card reload) by sending crafted IEEE 802.3x flow-control PAUSE frames on the local network, aka Bug ID CSCut19959.
nvd
CVE-2014-3321P4MEDIUMCVSS 5.7≤ 4.3.4v4.3.0+2 more2014-07-18
CVE-2014-3321 [MEDIUM] CWE-20 CVE-2014-3321: Cisco IOS XR 4.3.4 and earlier on ASR 9000 devices, when bridge-group virtual interface (BVI) routin Cisco IOS XR 4.3.4 and earlier on ASR 9000 devices, when bridge-group virtual interface (BVI) routing is enabled, allows remote attackers to cause a denial of service (chip and card hangs) via a series of crafted MPLS packets, aka Bug ID CSCuo91149.
nvd
CVE-2014-3378P4MEDIUMCVSS 5.0v2.0v3.0+53 more2014-09-20
CVE-2014-3378 [MEDIUM] CWE-20 CVE-2014-3378: tacacsd in Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (proces tacacsd in Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (process reload) via a malformed TACACS+ packet, aka Bug ID CSCum00468.
nvd
CVE-2014-3376P4MEDIUMCVSS 5.0v2.0v3.0+53 more2014-09-20
CVE-2014-3376 [MEDIUM] CWE-20 CVE-2014-3376: Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (process reload) v Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (process reload) via a malformed RSVP packet, aka Bug ID CSCuq12031.
nvd
CVE-2021-1128P4MEDIUMCVSS 5.5fixed in 7.1.2v7.2.0+1 more2021-02-04
CVE-2021-1128 [MEDIUM] CWE-201 CVE-2021-1128: A vulnerability in the CLI parser of Cisco IOS XR Software could allow an authenticated, local attac A vulnerability in the CLI parser of Cisco IOS XR Software could allow an authenticated, local attacker to view more information than their privileges allow. The vulnerability is due to insufficient application of restrictions during the execution of a specific command. An attacker could exploit this vulnerability by using a specific command at the co
nvd
CVE-2014-8005P4MEDIUMCVSS 5.0≤ 5.1.02014-11-26
CVE-2014-8005 [MEDIUM] CWE-362 CVE-2014-8005: Race condition in the lighttpd module in Cisco IOS XR 5.1 and earlier on Network Convergence System Race condition in the lighttpd module in Cisco IOS XR 5.1 and earlier on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (process reload) by establishing many TCP sessions, aka Bug ID CSCuq45239.
nvd
CVE-2024-20319P4MEDIUMCVSS 4.3v5.2.0v5.2.1+91 more2024-03-13
CVE-2024-20319 [MEDIUM] CWE-284 CVE-2024-20319: A vulnerability in the UDP forwarding code of Cisco IOS XR Software could allow an unauthenticated, A vulnerability in the UDP forwarding code of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to bypass configured management plane protection policies and access the Simple Network Management Plane (SNMP) server of an affected device. This vulnerability is due to incorrect UDP forwarding programming when using SNMP with manag
nvd
CVE-2016-1361P4MEDIUMCVSS 5.3v3.3.3v3.4.1+32 more2016-03-12
CVE-2016-1361 [MEDIUM] CWE-399 CVE-2016-1361: Cisco IOS XR through 4.3.2 on Gigabit Switch Router (GSR) 12000 devices does not properly check for Cisco IOS XR through 4.3.2 on Gigabit Switch Router (GSR) 12000 devices does not properly check for a Bidirectional Forwarding Detection (BFD) header in a UDP packet, which allows remote attackers to cause a denial of service (line-card restart) via a crafted packet, aka Bug ID CSCuw56900.
nvd
Cisco IOS XR vulnerabilities | cvebase