Skip to main content

Vendor/product archive

cisco / ios CVEs

Beta · best-effort

602 CVEs tagged to cisco / ios32 Critical, 323 High, 236 Medium, 11 Low, 0 Unrated.

CVE-2012-0381

Published Mar 29, 2012

The IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS through 3.4.xS before 3.4.2S, 3.5.xS before 3.5.1S, and 3.2…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2011-2059

Published Oct 22, 2011

The ipv6 component in Cisco IOS before 15.1(4)M1.3 allows remote attackers to conduct fingerprinting attacks and obtain potentially sensitive information about the presence of the…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-2058

Published Oct 22, 2011

The cat6000-dot1x component in Cisco IOS 12.2 before 12.2(33)SXI7 does not properly handle an external loop between a pair of dot1x enabled ports, which allows remote attackers to…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2011-2057

Published Oct 22, 2011

The cat6000-dot1x component in Cisco IOS 12.2 before 12.2(33)SXI7 does not properly handle (1) a loop between a dot1x enabled port and an open-authentication dot1x enabled port an…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2011-1640

Published Oct 22, 2011

The ethernet-lldp component in Cisco IOS 12.2 before 12.2(33)SXJ1 does not properly support a large number of LLDP Management Address (MA) TLVs, which allows remote attackers to c…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3282

Published Oct 3, 2011

Unspecified vulnerability in Cisco IOS 12.2SRE before 12.2(33)SRE4, 15.0, and 15.1, and IOS XE 2.1.x through 3.3.x, when an MPLS domain is configured, allows remote attackers to c…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3281

Published Oct 3, 2011

Unspecified vulnerability in Cisco IOS 15.0 through 15.1, in certain HTTP Layer 7 Application Control and Inspection configurations, allows remote attackers to cause a denial of s…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3280

Published Oct 3, 2011

Memory leak in the NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service (memory consum…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3279

Published Oct 3, 2011

The provider-edge MPLS NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service (device re…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3278

Published Oct 3, 2011

Unspecified vulnerability in the NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3277

Published Oct 3, 2011

Unspecified vulnerability in the NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3276

Published Oct 3, 2011

Unspecified vulnerability in the NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3275

Published Oct 3, 2011

Memory leak in Cisco IOS 12.4, 15.0, and 15.1, and IOS XE 2.5.x through 3.2.x, allows remote attackers to cause a denial of service (memory consumption) via a crafted SIP message,…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3274

Published Oct 3, 2011

Unspecified vulnerability in Cisco IOS 12.2SRE before 12.2(33)SRE4, 15.0, and 15.1, and IOS XE 2.1.x through 3.3.x, when an MPLS domain is configured, allows remote attackers to c…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-3273

Published Oct 3, 2011

Memory leak in Cisco IOS 15.0 through 15.1, when IPS or Zone-Based Firewall (aka ZBFW) is configured, allows remote attackers to cause a denial of service (memory consumption or d…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3272

Published Oct 3, 2011

The IP Service Level Agreement (IP SLA) functionality in Cisco IOS 15.1, and IOS XE 2.1.x through 3.3.x, allows remote attackers to cause a denial of service (memory corruption an…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-3271

Published Oct 3, 2011

Unspecified vulnerability in the Smart Install functionality in Cisco IOS 12.2 and 15.1 allows remote attackers to execute arbitrary code or cause a denial of service (device cras…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-3270

Published Oct 3, 2011

Unspecified vulnerability in Cisco IOS 12.2SB before 12.2(33)SB10 and 15.0S before 15.0(1)S3a on Cisco 10000 series routers allows remote attackers to cause a denial of service (d…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-0946

Published Oct 3, 2011

The NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service (device reload or hang) via m…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-0945

Published Oct 3, 2011

Memory leak in the Data-link switching (aka DLSw) feature in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xS before 3.1.3S and 3.2.xS before 3.2.1S, when impl…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-0944

Published Oct 3, 2011

Cisco IOS 12.4, 15.0, and 15.1 allows remote attackers to cause a denial of service (device reload) via malformed IPv6 packets, aka Bug ID CSCtj41194.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-0939

Published Oct 3, 2011

Unspecified vulnerability in Cisco IOS 12.4, 15.0, and 15.1, and IOS XE 2.5.x through 3.2.x, allows remote attackers to cause a denial of service (device reload) via a crafted SIP…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-1625

Published Aug 18, 2011

Cisco IOS 12.2, 12.3, 12.4, 15.0, and 15.1, when the data-link switching (DLSw) feature is configured, allows remote attackers to cause a denial of service (device crash) by sendi…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 376-400 of 602 CVEsPage 16 of 25