7.2

CVE-2020-3209

A vulnerability in software image verification in Cisco IOS XE Software could allow an unauthenticated, physical attacker to install and boot a malicious software image or execute unsigned binaries on an affected device. The vulnerability is due to an improper check on the area of code that manages the verification of the digital signatures of system image files during the initial boot process. An attacker could exploit this vulnerability by loading unsigned software on an affected device. A successful exploit could allow the attacker to install and boot a malicious software image or execute unsigned binaries on the targeted device.

Data is provided by the National Vulnerability Database (NVD)
CiscoIos Xe Version3.2.0se
CiscoIos Xe Version3.2.0sg
CiscoIos Xe Version3.2.1se
CiscoIos Xe Version3.2.1sg
CiscoIos Xe Version3.2.2se
CiscoIos Xe Version3.2.2sg
CiscoIos Xe Version3.2.3se
CiscoIos Xe Version3.2.3sg
CiscoIos Xe Version3.2.4sg
CiscoIos Xe Version3.2.5sg
CiscoIos Xe Version3.2.6sg
CiscoIos Xe Version3.2.7sg
CiscoIos Xe Version3.2.8sg
CiscoIos Xe Version3.2.9sg
CiscoIos Xe Version3.2.10sg
CiscoIos Xe Version3.2.11sg
CiscoIos Xe Version3.3.0se
CiscoIos Xe Version3.3.0sg
CiscoIos Xe Version3.3.0sq
CiscoIos Xe Version3.3.0xo
CiscoIos Xe Version3.3.1se
CiscoIos Xe Version3.3.1sg
CiscoIos Xe Version3.3.1sq
CiscoIos Xe Version3.3.1xo
CiscoIos Xe Version3.3.2se
CiscoIos Xe Version3.3.2sg
CiscoIos Xe Version3.3.2xo
CiscoIos Xe Version3.3.3se
CiscoIos Xe Version3.3.4se
CiscoIos Xe Version3.3.5se
CiscoIos Xe Version3.4.0sg
CiscoIos Xe Version3.4.0sq
CiscoIos Xe Version3.4.1sg
CiscoIos Xe Version3.4.1sq
CiscoIos Xe Version3.4.2sg
CiscoIos Xe Version3.4.3sg
CiscoIos Xe Version3.4.4sg
CiscoIos Xe Version3.4.5sg
CiscoIos Xe Version3.4.6sg
CiscoIos Xe Version3.4.7sg
CiscoIos Xe Version3.4.8sg
CiscoIos Xe Version3.5.0e
CiscoIos Xe Version3.5.0sq
CiscoIos Xe Version3.5.1e
CiscoIos Xe Version3.5.1sq
CiscoIos Xe Version3.5.2e
CiscoIos Xe Version3.5.2sq
CiscoIos Xe Version3.5.3e
CiscoIos Xe Version3.5.3sq
CiscoIos Xe Version3.5.4sq
CiscoIos Xe Version3.5.5sq
CiscoIos Xe Version3.5.6sq
CiscoIos Xe Version3.5.7sq
CiscoIos Xe Version3.5.8sq
CiscoIos Xe Version3.6.0ae
CiscoIos Xe Version3.6.0be
CiscoIos Xe Version3.6.0e
CiscoIos Xe Version3.6.1e
CiscoIos Xe Version3.6.2ae
CiscoIos Xe Version3.6.3e
CiscoIos Xe Version3.6.4e
CiscoIos Xe Version3.6.5ae
CiscoIos Xe Version3.6.5be
CiscoIos Xe Version3.6.5e
CiscoIos Xe Version3.6.6e
CiscoIos Xe Version3.6.7ae
CiscoIos Xe Version3.6.7be
CiscoIos Xe Version3.6.7e
CiscoIos Xe Version3.6.8e
CiscoIos Xe Version3.6.9ae
CiscoIos Xe Version3.6.9e
CiscoIos Xe Version3.6.10e
CiscoIos Xe Version3.7.0bs
CiscoIos Xe Version3.7.0e
CiscoIos Xe Version3.7.0s
CiscoIos Xe Version3.7.1as
CiscoIos Xe Version3.7.1e
CiscoIos Xe Version3.7.1s
CiscoIos Xe Version3.7.2e
CiscoIos Xe Version3.7.2s
CiscoIos Xe Version3.7.2ts
CiscoIos Xe Version3.7.3e
CiscoIos Xe Version3.7.3s
CiscoIos Xe Version3.7.4as
CiscoIos Xe Version3.7.4e
CiscoIos Xe Version3.7.4s
CiscoIos Xe Version3.7.5e
CiscoIos Xe Version3.7.5s
CiscoIos Xe Version3.7.6s
CiscoIos Xe Version3.7.7s
CiscoIos Xe Version3.7.8s
CiscoIos Xe Version3.8.0e
CiscoIos Xe Version3.8.0s
CiscoIos Xe Version3.8.1e
CiscoIos Xe Version3.8.1s
CiscoIos Xe Version3.8.2e
CiscoIos Xe Version3.8.2s
CiscoIos Xe Version3.8.3e
CiscoIos Xe Version3.8.4e
CiscoIos Xe Version3.8.5ae
CiscoIos Xe Version3.8.5e
CiscoIos Xe Version3.8.6e
CiscoIos Xe Version3.8.7e
CiscoIos Xe Version3.8.8e
CiscoIos Xe Version3.8.9e
CiscoIos Xe Version3.9.0as
CiscoIos Xe Version3.9.0e
CiscoIos Xe Version3.9.0s
CiscoIos Xe Version3.9.1as
CiscoIos Xe Version3.9.1e
CiscoIos Xe Version3.9.1s
CiscoIos Xe Version3.9.2be
CiscoIos Xe Version3.9.2e
CiscoIos Xe Version3.9.2s
CiscoIos Xe Version3.10.0ce
CiscoIos Xe Version3.10.0e
CiscoIos Xe Version3.10.0s
CiscoIos Xe Version3.10.1ae
CiscoIos Xe Version3.10.1e
CiscoIos Xe Version3.10.1s
CiscoIos Xe Version3.10.1se
CiscoIos Xe Version3.10.2as
CiscoIos Xe Version3.10.2e
CiscoIos Xe Version3.10.2s
CiscoIos Xe Version3.10.2ts
CiscoIos Xe Version3.10.3e
CiscoIos Xe Version3.10.3s
CiscoIos Xe Version3.10.4s
CiscoIos Xe Version3.10.5s
CiscoIos Xe Version3.10.6s
CiscoIos Xe Version3.10.7s
CiscoIos Xe Version3.10.8as
CiscoIos Xe Version3.10.8s
CiscoIos Xe Version3.10.9s
CiscoIos Xe Version3.10.10s
CiscoIos Xe Version3.11.0e
CiscoIos Xe Version3.11.0s
CiscoIos Xe Version3.11.1e
CiscoIos Xe Version3.11.1s
CiscoIos Xe Version3.11.2s
CiscoIos Xe Version3.11.3e
CiscoIos Xe Version3.11.3s
CiscoIos Xe Version3.11.4s
CiscoIos Xe Version3.12.0as
CiscoIos Xe Version3.12.0s
CiscoIos Xe Version3.12.1s
CiscoIos Xe Version3.12.2s
CiscoIos Xe Version3.12.3s
CiscoIos Xe Version3.12.4s
CiscoIos Xe Version3.13.0as
CiscoIos Xe Version3.13.0s
CiscoIos Xe Version3.13.1s
CiscoIos Xe Version3.13.2as
CiscoIos Xe Version3.13.2s
CiscoIos Xe Version3.13.3s
CiscoIos Xe Version3.13.4s
CiscoIos Xe Version3.13.5as
CiscoIos Xe Version3.13.5s
CiscoIos Xe Version3.13.6as
CiscoIos Xe Version3.13.6bs
CiscoIos Xe Version3.13.6s
CiscoIos Xe Version3.13.7as
CiscoIos Xe Version3.13.7s
CiscoIos Xe Version3.13.8s
CiscoIos Xe Version3.13.9s
CiscoIos Xe Version3.13.10s
CiscoIos Xe Version3.14.0s
CiscoIos Xe Version3.14.1s
CiscoIos Xe Version3.14.2s
CiscoIos Xe Version3.14.3s
CiscoIos Xe Version3.14.4s
CiscoIos Xe Version3.15.0s
CiscoIos Xe Version3.15.1cs
CiscoIos Xe Version3.15.1s
CiscoIos Xe Version3.15.2s
CiscoIos Xe Version3.15.3s
CiscoIos Xe Version3.15.4s
CiscoIos Xe Version3.16.0as
CiscoIos Xe Version3.16.0bs
CiscoIos Xe Version3.16.0cs
CiscoIos Xe Version3.16.0s
CiscoIos Xe Version3.16.1as
CiscoIos Xe Version3.16.1s
CiscoIos Xe Version3.16.2as
CiscoIos Xe Version3.16.2bs
CiscoIos Xe Version3.16.2s
CiscoIos Xe Version3.16.3as
CiscoIos Xe Version3.16.3s
CiscoIos Xe Version3.16.4as
CiscoIos Xe Version3.16.4bs
CiscoIos Xe Version3.16.4cs
CiscoIos Xe Version3.16.4ds
CiscoIos Xe Version3.16.4es
CiscoIos Xe Version3.16.4gs
CiscoIos Xe Version3.16.4s
CiscoIos Xe Version3.16.5as
CiscoIos Xe Version3.16.5bs
CiscoIos Xe Version3.16.5s
CiscoIos Xe Version3.16.6bs
CiscoIos Xe Version3.16.6s
CiscoIos Xe Version3.16.7as
CiscoIos Xe Version3.16.7bs
CiscoIos Xe Version3.16.7s
CiscoIos Xe Version3.16.8s
CiscoIos Xe Version3.16.9s
CiscoIos Xe Version3.16.10s
CiscoIos Xe Version3.17.0s
CiscoIos Xe Version3.17.1as
CiscoIos Xe Version3.17.1s
CiscoIos Xe Version3.17.2s
CiscoIos Xe Version3.17.3s
CiscoIos Xe Version3.17.4s
CiscoIos Xe Version3.18.0as
CiscoIos Xe Version3.18.0s
CiscoIos Xe Version3.18.0sp
CiscoIos Xe Version3.18.1asp
CiscoIos Xe Version3.18.1bsp
CiscoIos Xe Version3.18.1csp
CiscoIos Xe Version3.18.1gsp
CiscoIos Xe Version3.18.1hsp
CiscoIos Xe Version3.18.1isp
CiscoIos Xe Version3.18.1s
CiscoIos Xe Version3.18.1sp
CiscoIos Xe Version3.18.2asp
CiscoIos Xe Version3.18.2s
CiscoIos Xe Version3.18.2sp
CiscoIos Xe Version3.18.3asp
CiscoIos Xe Version3.18.3bsp
CiscoIos Xe Version3.18.3s
CiscoIos Xe Version3.18.3sp
CiscoIos Xe Version3.18.4s
CiscoIos Xe Version3.18.4sp
CiscoIos Xe Version3.18.5sp
CiscoIos Xe Version3.18.6sp
CiscoIos Xe Version3.18.7sp
CiscoIos Xe Version3.18.8sp
CiscoIos Xe Version16.1.1
CiscoIos Xe Version16.1.2
CiscoIos Xe Version16.1.3
CiscoIos Xe Version16.2.1
CiscoIos Xe Version16.2.2
CiscoIos Xe Version16.3.1
CiscoIos Xe Version16.3.1a
CiscoIos Xe Version16.3.2
CiscoIos Xe Version16.3.3
CiscoIos Xe Version16.3.4
CiscoIos Xe Version16.3.5
CiscoIos Xe Version16.3.5b
CiscoIos Xe Version16.3.6
CiscoIos Xe Version16.3.7
CiscoIos Xe Version16.3.8
CiscoIos Xe Version16.4.1
CiscoIos Xe Version16.4.2
CiscoIos Xe Version16.4.3
CiscoIos Xe Version16.5.1
CiscoIos Xe Version16.5.1a
CiscoIos Xe Version16.5.1b
CiscoIos Xe Version16.5.2
CiscoIos Xe Version16.5.3
CiscoIos Xe Version16.6.1
CiscoIos Xe Version16.6.2
CiscoIos Xe Version16.6.3
CiscoIos Xe Version16.6.4
CiscoIos Xe Version16.6.4a
CiscoIos Xe Version16.6.4s
CiscoIos Xe Version16.6.5
CiscoIos Xe Version16.6.5a
CiscoIos Xe Version16.6.5b
CiscoIos Xe Version16.6.6
CiscoIos Xe Version16.6.7
CiscoIos Xe Version16.6.7a
CiscoIos Xe Version16.7.1
CiscoIos Xe Version16.7.1a
CiscoIos Xe Version16.7.1b
CiscoIos Xe Version16.7.2
CiscoIos Xe Version16.7.3
CiscoIos Xe Version16.7.4
CiscoIos Xe Version16.8.1
CiscoIos Xe Version16.8.1a
CiscoIos Xe Version16.8.1b
CiscoIos Xe Version16.8.1c
CiscoIos Xe Version16.8.1d
CiscoIos Xe Version16.8.1e
CiscoIos Xe Version16.8.1s
CiscoIos Xe Version16.8.2
CiscoIos Xe Version16.8.3
CiscoIos Xe Version16.9.1
CiscoIos Xe Version16.9.1a
CiscoIos Xe Version16.9.1b
CiscoIos Xe Version16.9.1c
CiscoIos Xe Version16.9.1d
CiscoIos Xe Version16.9.1s
CiscoIos Xe Version16.9.2
CiscoIos Xe Version16.9.2a
CiscoIos Xe Version16.9.2s
CiscoIos Xe Version16.9.3
CiscoIos Xe Version16.9.3h
CiscoIos Xe Version16.9.3s
CiscoIos Xe Version16.9.4
CiscoIos Xe Version16.9.4c
CiscoIos Xe Version16.10.1
CiscoIos Xe Version16.10.1a
CiscoIos Xe Version16.10.1b
CiscoIos Xe Version16.10.1c
CiscoIos Xe Version16.10.1d
CiscoIos Xe Version16.10.1e
CiscoIos Xe Version16.10.1f
CiscoIos Xe Version16.10.1g
CiscoIos Xe Version16.10.1s
CiscoIos Xe Version16.10.2
CiscoIos Xe Version16.11.1
CiscoIos Xe Version16.11.1a
CiscoIos Xe Version16.11.1b
CiscoIos Xe Version16.12.1y
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.45% 0.629
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.8 0.9 5.9
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
psirt@cisco.com 6.8 0.9 5.9
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-347 Improper Verification of Cryptographic Signature

The product does not verify, or incorrectly verifies, the cryptographic signature for data.