Skip to main content

Vendor/product archive

cisco / ios CVEs

Beta · best-effort

602 CVEs tagged to cisco / ios32 Critical, 323 High, 236 Medium, 11 Low, 0 Unrated.

CVE-2011-1624

Published Aug 18, 2011

Cisco IOS 12.2(58)SE, when a login banner is configured, allows remote attackers to cause a denial of service (device reload) by establishing two SSH2 sessions, aka Bug ID CSCto62…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-2395

Published Jun 9, 2011

The Neighbor Discovery (ND) protocol implementation in Cisco IOS on unspecified switches allows remote attackers to bypass the Router Advertisement Guarding functionality via a fr…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-0935

Published Apr 14, 2011

The PKI functionality in Cisco IOS 15.0 and 15.1 does not prevent permanent caching of certain public keys, which allows remote attackers to bypass authentication and have unspeci…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4687

Published Jan 7, 2011

STCAPP (aka the SCCP telephony control application) on Cisco IOS before 15.0(1)XA1 does not properly handle multiple calls to a shared line, which allows remote attackers to cause…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4686

Published Jan 7, 2011

CallManager Express (CME) on Cisco IOS before 15.0(1)XA1 does not properly handle SIP TRUNK traffic that contains rate bursts and a "peculiar" request size, which allows remote at…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-4685

Published Jan 7, 2011

Cisco IOS before 15.0(1)XA1 does not clear the public key cache upon a change to a certificate map, which allows remote authenticated users to bypass a certificate ban by connecti…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4684

Published Jan 7, 2011

Cisco IOS before 15.0(1)XA1, when certain TFTP debugging is enabled, allows remote attackers to cause a denial of service (device crash) via a TFTP copy over IPv6, aka Bug ID CSCt…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2010-4683

Published Jan 7, 2011

Memory leak in Cisco IOS before 15.0(1)XA5 might allow remote attackers to cause a denial of service (memory consumption) by sending a crafted SIP REGISTER message over UDP, aka B…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-5040

Published Jan 7, 2011

CallManager Express (CME) on Cisco IOS before 15.0(1)XA allows remote authenticated users to cause a denial of service (device crash) by using an extension mobility (EM) phone to…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-5039

Published Jan 7, 2011

Memory leak in the gk_circuit_info_do_in_acf function in the H.323 implementation in Cisco IOS before 15.0(1)XA allows remote attackers to cause a denial of service (memory consum…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-5038

Published Jan 7, 2011

Cisco IOS before 15.0(1)XA does not properly handle IRC traffic during a specific time period after an initial reload, which allows remote attackers to cause a denial of service (…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-4671

Published Jan 7, 2011

The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS before 15.0(1)XA5 allows remote attackers to cause a denial of service (CPU consumption and devi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-2836

Published Sep 23, 2010

Memory leak in the SSL VPN feature in Cisco IOS 12.4, 15.0, and 15.1, when HTTP port redirection is enabled, allows remote attackers to cause a denial of service (memory consumpti…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-2833

Published Sep 23, 2010

Unspecified vulnerability in the NAT for H.225.0 implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1 allows remote attackers to cause a denial of service (device r…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-2832

Published Sep 23, 2010

Unspecified vulnerability in the NAT for H.323 implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1 allows remote attackers to cause a denial of service (device rel…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-2831

Published Sep 23, 2010

Unspecified vulnerability in the NAT for SIP implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1 allows remote attackers to cause a denial of service (device reloa…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-2830

Published Sep 23, 2010

The IGMPv3 implementation in Cisco IOS 12.2, 12.3, 12.4, and 15.0 and IOS XE 2.5.x before 2.5.2, when PIM is enabled, allows remote attackers to cause a denial of service (device…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2010-2829

Published Sep 23, 2010

Unspecified vulnerability in the H.323 implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 2.5.x before 2.5.2 and 2.6.x before 2.6.1, allows remote att…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-2828

Published Sep 23, 2010

Unspecified vulnerability in the H.323 implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 2.5.x before 2.5.2 and 2.6.x before 2.6.1, allows remote att…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 401-425 of 602 CVEsPage 17 of 25