Skip to main content

Vendor/product archive

cisco / ios_xe CVEs

Beta · best-effort

534 CVEs tagged to cisco / ios_xe16 Critical, 315 High, 202 Medium, 1 Low, 0 Unrated.

CVE-2013-6981

Published Dec 28, 2013

Cisco IOS XE 3.7S(.1) and earlier allows remote attackers to cause a denial of service (Packet Processor crash) via fragmented MPLS IP packets, aka Bug ID CSCul00709.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6979

Published Dec 23, 2013

The VTY authentication implementation in Cisco IOS XE 03.02.xxSE and 03.03.xxSE incorrectly relies on the Linux-IOS internal-network configuration, which allows remote attackers t…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6705

Published Dec 3, 2013

The IP Device Tracking (IPDT) feature in Cisco IOS and IOS XE allows remote attackers to cause a denial of service (IPDT AVL corruption and device reload) via a crafted sequence o…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6704

Published Dec 3, 2013

Cisco IOS XE does not properly manage memory for TFTP UDP flows, which allows remote attackers to cause a denial of service (memory consumption) via TFTP (1) client or (2) server…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2013-6706

Published Nov 29, 2013

The Cisco Express Forwarding processing module in Cisco IOS XE allows remote attackers to cause a denial of service (device reload) via crafted MPLS packets that are not properly…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6692

Published Nov 22, 2013

Cisco IOS XE 3.8S(.2) and earlier does not properly use a DHCP pool during assignment of an IP address, which allows remote authenticated users to cause a denial of service (devic…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-5527

Published Oct 10, 2013

The OSPF functionality in Cisco IOS and IOS XE allows remote attackers to cause a denial of service (device reload) via crafted options in an LSA type 11 packet, aka Bug ID CSCui2…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-5478

Published Sep 27, 2013

Cisco IOS 15.0 through 15.3 and IOS XE 3.2 through 3.8, when a VRF interface exists, allows remote attackers to cause a denial of service (interface queue wedge) via crafted UDP R…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-5475

Published Sep 27, 2013

Cisco IOS 12.2 through 12.4 and 15.0 through 15.3, and IOS XE 2.1 through 3.9, allows remote attackers to cause a denial of service (device reload) via crafted DHCP packets that a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-5473

Published Sep 27, 2013

Memory leak in Cisco IOS 12.2, 15.1, and 15.2; IOS XE 3.4.2S through 3.4.5S; and IOS XE 3.6.xS before 3.6.1S allows remote attackers to cause a denial of service (memory consumpti…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-5472

Published Sep 27, 2013

The NTP implementation in Cisco IOS 12.0 through 12.4 and 15.0 through 15.1, and IOS XE 2.1 through 3.3, does not properly handle encapsulation of multicast NTP packets within MSD…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2013-1148

Published Mar 28, 2013

The General Responder implementation in the IP Service Level Agreement (SLA) feature in Cisco IOS 15.2 and IOS XE 3.1.xS through 3.4.xS before 3.4.5S and 3.5.xS through 3.7.xS bef…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-1143

Published Mar 28, 2013

The RSVP protocol implementation in Cisco IOS 12.2 and 15.0 through 15.2 and IOS XE 3.1.xS through 3.4.xS before 3.4.5S and 3.5.xS through 3.7.xS before 3.7.2S, when MPLS-TE is en…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4623

Published Sep 27, 2012

The DHCPv6 server in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x, 3.1.xS before 3.1.4S, 3.1.xSG and 3.2.xSG before 3.2.5SG, 3.2.xS, 3.2.xXO, 3…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4622

Published Sep 27, 2012

Cisco IOS XE 03.02.00.XO.15.0(2)XO on Catalyst 4500E series switches, when a Supervisor Engine 7L-E card is installed, allows remote attackers to cause a denial of service (card r…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort
Showing 476-500 of 534 CVEsPage 20 of 22