Skip to main content

Vendor/product archive

cisco / ios_xe CVEs

Beta · best-effort

534 CVEs tagged to cisco / ios_xe16 Critical, 315 High, 202 Medium, 1 Low, 0 Unrated.

CVE-2020-3417

Published Sep 24, 2020

A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to execute persistent code at boot time and break the chain of trust. This vulnerability is d…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-3400

Published Sep 24, 2020

A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to utilize parts of the web UI for which they are not authorized.The v…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-3359

Published Sep 24, 2020

A vulnerability in the multicast DNS (mDNS) feature of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, remote attacker to…

CVSS 8.6 · High

CVE-2019-16009

Published Sep 23, 2020

A vulnerability in the web UI of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an af…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-3232

Published Jun 3, 2020

A vulnerability in the Simple Network Management Protocol (SNMP) implementation in Cisco ASR 920 Series Aggregation Services Router model ASR920-12SZ-IM could allow an authenticat…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2020-3230

Published Jun 3, 2020

A vulnerability in the Internet Key Exchange Version 2 (IKEv2) implementation in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to pr…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-3229

Published Jun 3, 2020

A vulnerability in Role Based Access Control (RBAC) functionality of Cisco IOS XE Web Management Software could allow a Read-Only authenticated, remote attacker to execute command…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-3227

Published Jun 3, 2020

A vulnerability in the authorization controls for the Cisco IOx application hosting infrastructure in Cisco IOS XE Software could allow an unauthenticated, remote attacker to exec…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-3226

Published Jun 3, 2020

A vulnerability in the Session Initiation Protocol (SIP) library of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigger a reloa…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2020-3225

Published Jun 3, 2020

Multiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remo…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2020-3224

Published Jun 3, 2020

A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker with read-only privileges to inject IOS commands to…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 201-225 of 534 CVEsPage 9 of 22