Skip to main content

Vendor/product archive

cisco / ios_xe CVEs

Beta · best-effort

534 CVEs tagged to cisco / ios_xe16 Critical, 315 High, 202 Medium, 1 Low, 0 Unrated.

CVE-2020-3223

Published Jun 3, 2020

A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker with administrative privileges to read arbitrary fi…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-3222

Published Jun 3, 2020

A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to bypass access control restrictions on an aff…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-3220

Published Jun 3, 2020

A vulnerability in the hardware crypto driver of Cisco IOS XE Software for Cisco 4300 Series Integrated Services Routers and Cisco Catalyst 9800-L Wireless Controllers could allow…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-3219

Published Jun 3, 2020

A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to inject and execute arbitrary commands with administrative privileges on the…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-3218

Published Jun 3, 2020

A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker with administrative privileges to execute arbitrary code with root privileges…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2020-3215

Published Jun 3, 2020

A vulnerability in the Virtual Services Container of Cisco IOS XE Software could allow an authenticated, local attacker to gain root-level privileges on an affected device. The vu…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-3213

Published Jun 3, 2020

A vulnerability in the ROMMON of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to those of the root user of the underlying operating sys…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-3212

Published Jun 3, 2020

A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2020-3211

Published Jun 3, 2020

A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2020-3209

Published Jun 3, 2020

A vulnerability in software image verification in Cisco IOS XE Software could allow an unauthenticated, physical attacker to install and boot a malicious software image or execute…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-3206

Published Jun 3, 2020

A vulnerability in the handling of IEEE 802.11w Protected Management Frames (PMFs) of Cisco Catalyst 9800 Series Wireless Controllers that are running Cisco IOS XE Software could…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-3204

Published Jun 3, 2020

A vulnerability in the Tool Command Language (Tcl) interpreter of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, local attacker with privileged EXEC cr…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-3201

Published Jun 3, 2020

A vulnerability in the Tool Command Language (Tcl) interpreter of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, local attacker with privileged EXEC cr…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-3200

Published Jun 3, 2020

A vulnerability in the Secure Shell (SSH) server code of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause an affected device to…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2019-12668

Published Sep 25, 2019

A vulnerability in the web framework code of Cisco IOS and Cisco IOS XE Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attac…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-12667

Published Sep 25, 2019

A vulnerability in the web framework code of Cisco IOS XE Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a us…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-12666

Published Sep 25, 2019

A vulnerability in the Guest Shell of Cisco IOS XE Software could allow an authenticated, local attacker to perform directory traversal on the base Linux operating system of Cisco…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort
Showing 226-250 of 534 CVEsPage 10 of 22