Skip to main content

Vendor/product archive

cisco / ios CVEs

Beta · best-effort

602 CVEs tagged to cisco / ios32 Critical, 323 High, 236 Medium, 11 Low, 0 Unrated.

CVE-2014-3293

Published Oct 28, 2014

Cisco IOS 15.4(3)S0b on ASR901 devices makes incorrect decisions to use the CPU for IPv4 packet processing, which allows remote attackers to cause a denial of service (BGP neighbo…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3409

Published Oct 25, 2014

The Ethernet Connectivity Fault Management (CFM) handling feature in Cisco IOS 12.2(33)SRE9a and earlier and IOS XE 3.13S and earlier allows remote attackers to cause a denial of…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3361

Published Sep 25, 2014

The ALG module in Cisco IOS 15.0 through 15.4 does not properly implement SIP over NAT, which allows remote attackers to cause a denial of service (device reload) via multipart SD…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3360

Published Sep 25, 2014

Cisco IOS 12.4 and 15.0 through 15.4 and IOS XE 3.1.xS, 3.2.xS, 3.3.xS, 3.4.xS, 3.5.xS, 3.6.xS, and 3.7.xS before 3.7.6S; 3.8.xS, 3.9.xS, and 3.10.xS before 3.10.1S; and 3.11.xS b…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3359

Published Sep 25, 2014

Memory leak in Cisco IOS 15.1 through 15.4 and IOS XE 3.4.xS, 3.5.xS, 3.6.xS, and 3.7.xS before 3.7.6S; 3.8.xS, 3.9.xS, and 3.10.xS before 3.10.1S; and 3.11.xS before 3.12S allows…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3358

Published Sep 25, 2014

Memory leak in Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5.xE before 3.5.2E, and 3.11.xS before 3.11.1S allows remote attac…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3357

Published Sep 25, 2014

Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5.xE before 3.5.2E, and 3.11.xS before 3.11.1S allow remote attackers to cause a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3354

Published Sep 25, 2014

Cisco IOS 12.0, 12.2, 12.4, 15.0, 15.1, 15.2, and 15.3 and IOS XE 2.x and 3.x before 3.7.4S; 3.2.xSE and 3.3.xSE before 3.3.2SE; 3.3.xSG and 3.4.xSG before 3.4.4SG; and 3.8.xS, 3.…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3347

Published Aug 28, 2014

Cisco IOS 15.1(4)M2 on Cisco 1800 ISR devices, when the ISDN Basic Rate Interface is enabled, allows remote attackers to cause a denial of service (device hang) by leveraging know…

CVSS 5.4 · Medium

CVE-2014-3327

Published Aug 11, 2014

The EnergyWise module in Cisco IOS 12.2, 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.2.xXO, 3.3.xSG, 3.4.xSG, and 3.5.xE before 3.5.3E allows remote attackers to cause a denial of ser…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3309

Published Jul 9, 2014

The NTP implementation in Cisco IOS and IOS XE does not properly support use of the access-group command for a "deny all" configuration, which allows remote attackers to bypass in…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3299

Published Jun 25, 2014

Cisco IOS allows remote authenticated users to cause a denial of service (device reload) via malformed IPsec packets, aka Bug ID CSCui79745.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3273

Published May 20, 2014

The LLDP implementation in Cisco IOS allows remote attackers to cause a denial of service (device reload) via a malformed packet, aka Bug ID CSCum96282.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3268

Published May 20, 2014

Cisco IOS 15.2(4)M4 on Cisco Unified Border Element (CUBE) devices allows remote attackers to cause a denial of service (input-queue consumption and traffic-processing outage) via…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3263

Published May 16, 2014

The ScanSafe module in Cisco IOS 15.3(3)M allows remote attackers to cause a denial of service (device reload) via HTTPS packets that require tower processing, aka Bug ID CSCum970…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3262

Published May 16, 2014

The Locator/ID Separation Protocol (LISP) implementation in Cisco IOS 15.3(3)S and earlier and IOS XE does not properly validate parameters in ITR control messages, which allows r…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3946

Published Apr 24, 2014

Cisco IOS before 15.3(2)S allows remote attackers to bypass interface ACL restrictions in opportunistic circumstances by sending IPv6 packets in an unspecified scenario in which e…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5427

Published Apr 23, 2014

Cisco IOS Unified Border Element (CUBE) in Cisco IOS before 15.3(2)T allows remote authenticated users to cause a denial of service (input queue wedge) via a crafted series of RTC…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5044

Published Apr 23, 2014

Cisco IOS before 15.3(1)T, when media flow-around is not used, allows remote attackers to cause a denial of service (media loops and stack memory corruption) via VoIP traffic, aka…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5039

Published Apr 23, 2014

The BGP Router process in Cisco IOS before 12.2(50)SY1 allows remote attackers to cause a denial of service (memory consumption) via vectors involving BGP path attributes, aka Bug…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 251-275 of 602 CVEsPage 11 of 25