Skip to main content

Vendor/product archive

cisco / ios CVEs

Beta · best-effort

602 CVEs tagged to cisco / ios32 Critical, 323 High, 236 Medium, 11 Low, 0 Unrated.

CVE-2013-1145

Published Mar 28, 2013

Memory leak in Cisco IOS 12.2, 12.4, 15.0, and 15.1, when Zone-Based Policy Firewall SIP application layer gateway inspection is enabled, allows remote attackers to cause a denial…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-1144

Published Mar 28, 2013

Memory leak in the IKEv1 implementation in Cisco IOS 15.1 allows remote attackers to cause a denial of service (memory consumption) via unspecified (1) IPv4 or (2) IPv6 IKE packet…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-1143

Published Mar 28, 2013

The RSVP protocol implementation in Cisco IOS 12.2 and 15.0 through 15.2 and IOS XE 3.1.xS through 3.4.xS before 3.4.5S and 3.5.xS through 3.7.xS before 3.7.2S, when MPLS-TE is en…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2013-1142

Published Mar 28, 2013

Race condition in the VRF-aware NAT feature in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 allows remote attackers to cause a denial of service (memory consumption) via IPv4…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4623

Published Sep 27, 2012

The DHCPv6 server in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x, 3.1.xS before 3.1.4S, 3.1.xSG and 3.2.xSG before 3.2.5SG, 3.2.xS, 3.2.xXO, 3…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4621

Published Sep 27, 2012

The Device Sensor feature in Cisco IOS 15.0 through 15.2 allows remote attackers to cause a denial of service (device reload) via a DHCP packet, aka Bug ID CSCty96049.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4620

Published Sep 27, 2012

Cisco IOS 12.2 and 15.0 through 15.2 on Cisco 10000 series routers, when a tunnel interface exists, allows remote attackers to cause a denial of service (interface queue wedge) vi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4619

Published Sep 27, 2012

The NAT implementation in Cisco IOS 12.2, 12.4, and 15.0 through 15.2 allows remote attackers to cause a denial of service (device reload) via transit IP packets, aka Bug ID CSCtr…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4618

Published Sep 27, 2012

The SIP ALG feature in the NAT implementation in Cisco IOS 12.2, 12.4, and 15.0 through 15.2 allows remote attackers to cause a denial of service (device reload) via transit IP pa…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4617

Published Sep 27, 2012

The BGP implementation in Cisco IOS 15.2, IOS XE 3.5.xS before 3.5.2S, and IOS XR 4.1.0 through 4.2.2 allows remote attackers to cause a denial of service (multiple connection res…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2012-3950

Published Sep 27, 2012

The Intrusion Prevention System (IPS) feature in Cisco IOS 12.3 through 12.4 and 15.0 through 15.2, in certain configurations of enabled categories and missing signatures, allows…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2012-3924

Published Sep 16, 2012

The SSLVPN implementation in Cisco IOS 15.1 and 15.2, when DTLS is enabled, does not properly handle certain outbound ACL configurations, which allows remote authenticated users t…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2012-3923

Published Sep 16, 2012

The SSLVPN implementation in Cisco IOS 12.4, 15.0, 15.1, and 15.2, when DTLS is not enabled, does not properly handle certain outbound ACL configurations, which allows remote auth…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2012-3915

Published Sep 16, 2012

The DMVPN tunnel implementation in Cisco IOS 15.2 allows remote attackers to cause a denial of service (persistent IKE state) via a large volume of hub-to-spoke traffic, aka Bug I…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3895

Published Sep 16, 2012

Cisco IOS 15.0 through 15.3 allows remote authenticated users to cause a denial of service (device crash) via an MVPNv6 update, aka Bug ID CSCty89224.

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3893

Published Sep 16, 2012

The FlexVPN implementation in Cisco IOS 15.2 and 15.3 allows remote authenticated users to cause a denial of service (spoke crash) via spoke-to-spoke traffic, aka Bug ID CSCtz0262…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3079

Published Sep 16, 2012

Cisco IOS 12.2 allows remote attackers to cause a denial of service (CPU consumption) by establishing many IPv6 neighbors, aka Bug ID CSCtn78957.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-1361

Published Aug 6, 2012

Cisco IOS 15.1 and 15.2, when the Multicast Music-on-Hold (MMoH) feature of Cisco Unified Communications Manager (CUCM) is enabled, allows remote attackers to obtain sensitive cro…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-1344

Published Aug 6, 2012

Cisco IOS 15.1 and 15.2, when a clientless SSL VPN is configured, allows remote authenticated users to cause a denial of service (device reload) by using a web browser to refresh…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2012-1367

Published Aug 6, 2012

The MallocLite implementation in Cisco IOS 12.0, 12.2, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (Route Processor crash) via a BGP UPDATE message w…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-1327

Published May 3, 2012

dot11t/t_if_dot11_hal_ath.c in Cisco IOS 12.3, 12.4, 15.0, and 15.1 allows remote attackers to cause a denial of service (assertion failure and reboot) via 802.11 wireless traffic…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 326-350 of 602 CVEsPage 14 of 25