Skip to main content

Vendor/product archive

cisco / ios CVEs

Beta · best-effort

602 CVEs tagged to cisco / ios32 Critical, 323 High, 236 Medium, 11 Low, 0 Unrated.

CVE-2012-1324

Published May 3, 2012

Race condition in the Zone-Based Firewall in Cisco IOS 15.1 and 15.2, when IPS policies are configured, allows remote attackers to cause a denial of service (device crash) by send…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2011-4231

Published May 3, 2012

Cisco IOS 15.1 and 15.2 and IOS XE 3.x, when configured as an IPsec hub with X.509 certificates in use, allows remote authenticated users to cause a denial of service (segmentatio…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-0362

Published May 2, 2012

The extended ACL functionality in Cisco IOS 12.2(58)SE2 and 15.0(1)SE discards all lines that end with a log or time keyword, which allows remote attackers to bypass intended acce…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-0339

Published May 2, 2012

Cisco IOS 12.2 through 12.4 and 15.0 does not recognize the vrf-also keyword during enforcement of access-class commands, which allows remote attackers to establish TELNET connect…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-0338

Published May 2, 2012

Cisco IOS 12.2 through 12.4 and 15.0 does not recognize the vrf-also keyword during enforcement of access-class commands, which allows remote attackers to establish SSH connection…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-4016

Published May 2, 2012

The PPP implementation in Cisco IOS 12.2 and 15.0 through 15.2, when Point-to-Point Termination and Aggregation (PTA) and L2TP are used, allows remote attackers to cause a denial…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-4015

Published May 2, 2012

Cisco IOS 15.2S allows remote attackers to cause a denial of service (interface queue wedge) via malformed UDP traffic on port 465, aka Bug ID CSCts48300.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-4012

Published May 2, 2012

Cisco IOS 12.0, 15.0, and 15.1, when a Policy Feature Card 3C (PFC3C) is used, does not create a fragment entry during processing of an ICMPv6 ACL, which has unspecified impact an…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-4007

Published May 2, 2012

Cisco IOS 15.0 and 15.1 and IOS XE 3.x do not properly handle the "set mpls experimental imposition" command, which allows remote attackers to cause a denial of service (device cr…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-3289

Published May 2, 2012

Cisco IOS 12.4 and 15.0 through 15.2 allows physically proximate attackers to bypass the No Service Password-Recovery feature and read the start-up configuration via unspecified v…

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2011-2586

Published May 2, 2012

The HTTP client in Cisco IOS 12.4 and 15.0 allows user-assisted remote attackers to cause a denial of service (device crash) via a malformed HTTP response to a request for service…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-2578

Published May 2, 2012

Memory leak in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of service (memory consumption) via malformed SIP packets on a NAT interface, aka Bug ID CSCts1236…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-1315

Published Mar 29, 2012

Memory leak in the SIP inspection feature in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (memory consumpti…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-1314

Published Mar 29, 2012

The WAAS Express feature in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted transit traffic, aka Bug…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-1312

Published Mar 29, 2012

The MACE feature in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of service (device reload) via crafted transit traffic, aka Bug IDs CSCtq64987 and CSCtu57226.

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2012-1311

Published Mar 29, 2012

The RSVP feature in Cisco IOS 15.0 and 15.1 and IOS XE 3.2.xS through 3.4.xS before 3.4.2S, when a VRF interface is configured, allows remote attackers to cause a denial of servic…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-1310

Published Mar 29, 2012

Memory leak in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (memory consumption or device reload) via craft…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-0388

Published Mar 29, 2012

Memory leak in the H.323 inspection feature in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (memory consump…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-0387

Published Mar 29, 2012

Memory leak in the HTTP Inspection Engine feature in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (memory c…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-0386

Published Mar 29, 2012

The SSHv2 implementation in Cisco IOS 12.2, 12.4, 15.0, 15.1, and 15.2 and IOS XE 2.3.x through 2.6.x and 3.1.xS through 3.4.xS before 3.4.2S allows remote attackers to cause a de…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-0385

Published Mar 29, 2012

The Smart Install feature in Cisco IOS 12.2, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (device reload) by sending a malformed Smart Install message…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-0384

Published Mar 29, 2012

Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS before 3.1.2S, 3.2.xS through 3.4.xS before 3.4.2S, 3.5.xS before 3.5.1S, and 3.1.xSG a…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2012-0383

Published Mar 29, 2012

Memory leak in the NAT feature in Cisco IOS 12.4, 15.0, and 15.1 allows remote attackers to cause a denial of service (memory consumption, and device hang or reload) via SIP packe…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-0382

Published Mar 29, 2012

The Multicast Source Discovery Protocol (MSDP) implementation in Cisco IOS 12.0, 12.2 through 12.4, and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS through 3.4.xS…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 351-375 of 602 CVEsPage 15 of 25