5.3

CVE-2025-20196

A vulnerability in the Cisco IOx application hosting environment of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the Cisco IOx application hosting environment to stop responding, resulting in a denial of service (DoS) condition.

 This vulnerability is due to the improper handling of HTTP requests. An attacker could exploit this vulnerability by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to cause the Cisco IOx application hosting environment to stop responding. The IOx process will need to be manually restarted to recover services.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoIos Xe Version16.1.1
CiscoIos Xe Version16.1.2
CiscoIos Xe Version16.1.3
CiscoIos Xe Version16.2.1
CiscoIos Xe Version16.2.2
CiscoIos Xe Version16.3.1
CiscoIos Xe Version16.3.1a
CiscoIos Xe Version16.3.2
CiscoIos Xe Version16.3.3
CiscoIos Xe Version16.3.4
CiscoIos Xe Version16.3.5
CiscoIos Xe Version16.3.5b
CiscoIos Xe Version16.3.6
CiscoIos Xe Version16.3.7
CiscoIos Xe Version16.3.8
CiscoIos Xe Version16.3.9
CiscoIos Xe Version16.3.10
CiscoIos Xe Version16.3.11
CiscoIos Xe Version16.4.1
CiscoIos Xe Version16.4.2
CiscoIos Xe Version16.4.3
CiscoIos Xe Version16.5.1
CiscoIos Xe Version16.5.1a
CiscoIos Xe Version16.5.1b
CiscoIos Xe Version16.5.2
CiscoIos Xe Version16.5.3
CiscoIos Xe Version17.1.1
CiscoIos Xe Version17.1.1a
CiscoIos Xe Version17.1.1s
CiscoIos Xe Version17.1.1t
CiscoIos Xe Version17.1.3
CiscoIos Xe Version17.2.1
CiscoIos Xe Version17.2.1a
CiscoIos Xe Version17.2.1r
CiscoIos Xe Version17.2.1v
CiscoIos Xe Version17.2.2
CiscoIos Xe Version17.2.3
CiscoIos Xe Version17.3.1
CiscoIos Xe Version17.3.1a
CiscoIos Xe Version17.3.1w
CiscoIos Xe Version17.3.1x
CiscoIos Xe Version17.3.1z
CiscoIos Xe Version17.3.2
CiscoIos Xe Version17.3.2a
CiscoIos Xe Version17.3.3
CiscoIos Xe Version17.3.4
CiscoIos Xe Version17.3.4a
CiscoIos Xe Version17.3.4b
CiscoIos Xe Version17.3.4c
CiscoIos Xe Version17.3.5
CiscoIos Xe Version17.3.5a
CiscoIos Xe Version17.3.5b
CiscoIos Xe Version17.3.6
CiscoIos Xe Version17.3.7
CiscoIos Xe Version17.3.8
CiscoIos Xe Version17.3.8a
CiscoIos Xe Version17.4.1
CiscoIos Xe Version17.4.1a
CiscoIos Xe Version17.4.1b
CiscoIos Xe Version17.4.2
CiscoIos Xe Version17.4.2a
CiscoIos Xe Version17.5.1
CiscoIos Xe Version17.5.1a
CiscoIos Xe Version17.6.1
CiscoIos Xe Version17.6.1a
CiscoIos Xe Version17.6.1w
CiscoIos Xe Version17.6.1x
CiscoIos Xe Version17.6.1y
CiscoIos Xe Version17.6.1z
CiscoIos Xe Version17.6.1z1
CiscoIos Xe Version17.6.2
CiscoIos Xe Version17.6.3
CiscoIos Xe Version17.6.3a
CiscoIos Xe Version17.6.4
CiscoIos Xe Version17.6.5
CiscoIos Xe Version17.6.5a
CiscoIos Xe Version17.6.6
CiscoIos Xe Version17.6.6a
CiscoIos Xe Version17.6.7
CiscoIos Xe Version17.6.8
CiscoIos Xe Version17.6.8a
CiscoIos Xe Version17.7.1
CiscoIos Xe Version17.7.1a
CiscoIos Xe Version17.7.1b
CiscoIos Xe Version17.7.2
CiscoIos Xe Version17.8.1
CiscoIos Xe Version17.8.1a
CiscoIos Xe Version17.9.1
CiscoIos Xe Version17.9.1a
CiscoIos Xe Version17.9.1w
CiscoIos Xe Version17.9.1x
CiscoIos Xe Version17.9.1x1
CiscoIos Xe Version17.9.1y
CiscoIos Xe Version17.9.1y1
CiscoIos Xe Version17.9.2
CiscoIos Xe Version17.9.2a
CiscoIos Xe Version17.9.3
CiscoIos Xe Version17.9.3a
CiscoIos Xe Version17.9.4
CiscoIos Xe Version17.9.4a
CiscoIos Xe Version17.9.5
CiscoIos Xe Version17.9.5a
CiscoIos Xe Version17.9.5b
CiscoIos Xe Version17.9.5e
CiscoIos Xe Version17.9.5f
CiscoIos Xe Version17.9.6
CiscoIos Xe Version17.9.6a
CiscoIos Xe Version17.10.1
CiscoIos Xe Version17.10.1a
CiscoIos Xe Version17.10.1b
CiscoIos Xe Version17.11.1
CiscoIos Xe Version17.11.1a
CiscoIos Xe Version17.11.99sw
CiscoIos Xe Version17.12.1
CiscoIos Xe Version17.12.1a
CiscoIos Xe Version17.12.1w
CiscoIos Xe Version17.12.1x
CiscoIos Xe Version17.12.1y
CiscoIos Xe Version17.12.1z
CiscoIos Xe Version17.12.1z1
CiscoIos Xe Version17.12.1z2
CiscoIos Xe Version17.12.1z4
CiscoIos Xe Version17.12.2
CiscoIos Xe Version17.12.2a
CiscoIos Xe Version17.12.3
CiscoIos Xe Version17.12.3a
CiscoIos Xe Version17.12.4
CiscoIos Xe Version17.12.4a
CiscoIos Xe Version17.12.4b
CiscoIos Xe Version17.13.1
CiscoIos Xe Version17.13.1a
CiscoIos Xe Version17.14.1
CiscoIos Xe Version17.14.1a
CiscoIos Xe Version17.15.2
CiscoIos Xe Version17.15.2a
CiscoIos Xe Version17.15.2b
CiscoIos Xe Version17.15.2c
CiscoCgr1000 Firmware Version < 15.9\(3\)m12
   CiscoCgr1000 Version-
CiscoIr510 Wpan Firmware Version-
   CiscoIr510 Wpan Version-
CiscoIos Xe Version < 17.15.2
   CiscoCatalyst 9100 Version-
   CiscoCatalyst 9105 Version-
   CiscoCatalyst 9105ax Version-
   CiscoCatalyst 9105axi Version-
   CiscoCatalyst 9105axw Version-
   CiscoCatalyst 9105i Version-
   CiscoCatalyst 9105w Version-
   CiscoCatalyst 9115 Version-
   CiscoCatalyst 9115 Ap Version-
   CiscoCatalyst 9115ax Version-
   CiscoCatalyst 9115axe Version-
   CiscoCatalyst 9115axi Version-
   CiscoCatalyst 9117 Version-
   CiscoCatalyst 9117 Ap Version-
   CiscoCatalyst 9117ax Version-
   CiscoCatalyst 9117axi Version-
   CiscoCatalyst 9120 Version-
   CiscoCatalyst 9120 Ap Version-
   CiscoCatalyst 9120ax Version-
   CiscoCatalyst 9120axe Version-
   CiscoCatalyst 9120axi Version-
   CiscoCatalyst 9120axp Version-
   CiscoCatalyst 9124 Version-
   CiscoCatalyst 9124ax Version-
   CiscoCatalyst 9124axd Version-
   CiscoCatalyst 9124axi Version-
   CiscoCatalyst 9124d Version-
   CiscoCatalyst 9124e Version-
   CiscoCatalyst 9124i Version-
   CiscoCatalyst 9130 Version-
   CiscoCatalyst 9130 Ap Version-
   CiscoCatalyst 9130ax Version-
   CiscoCatalyst 9130axe Version-
   CiscoCatalyst 9130axi Version-
   CiscoCatalyst 9136 Version-
   CiscoCatalyst 9162 Version-
   CiscoCatalyst 9164 Version-
   CiscoCatalyst 9166 Version-
   CiscoCatalyst 9166d1 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.05% 0.155
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
psirt@cisco.com 5.3 3.9 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CWE-307 Improper Restriction of Excessive Authentication Attempts

The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame.