- EPSS 68.02%
- Published 16.04.2025 21:34:37
- Last modified 30.07.2025 19:24:19
Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.3, OTP-26.2.5.11, and OTP-25.3.2.20, a SSH server may allow an attacker to perform unauthenticated remote code execution (RCE). By exploiting a flaw in S...
CVE-2023-20046
- EPSS 0.55%
- Published 09.05.2023 18:15:11
- Last modified 21.11.2024 07:40:25
A vulnerability in the key-based SSH authentication feature of Cisco StarOS Software could allow an authenticated, remote attacker to elevate privileges on an affected device. This vulnerability is due to insufficient validation of user-supplied c...
CVE-2022-20665
- EPSS 0.15%
- Published 06.04.2022 19:15:07
- Last modified 21.11.2024 06:43:16
A vulnerability in the CLI of Cisco StarOS could allow an authenticated, local attacker to elevate privileges on an affected device. This vulnerability is due to insufficient input validation of CLI commands. An attacker could exploit this vulnerabil...
CVE-2021-1540
- EPSS 0.26%
- Published 04.06.2021 17:15:09
- Last modified 21.11.2024 05:44:34
Multiple vulnerabilities in the authorization process of Cisco ASR 5000 Series Software (StarOS) could allow an authenticated, remote attacker to bypass authorization and execute a subset of CLI commands on an affected device. For more information ab...
CVE-2021-1539
- EPSS 0.29%
- Published 04.06.2021 17:15:09
- Last modified 21.11.2024 05:44:34
Multiple vulnerabilities in the authorization process of Cisco ASR 5000 Series Software (StarOS) could allow an authenticated, remote attacker to bypass authorization and execute a subset of CLI commands on an affected device. For more information ab...
CVE-2021-1378
- EPSS 0.16%
- Published 17.02.2021 17:15:13
- Last modified 21.11.2024 05:44:13
A vulnerability in the SSH service of the Cisco StarOS operating system could allow an unauthenticated, remote attacker to cause an affected device to stop processing traffic, resulting in a denial of service (DoS) condition. The vulnerability is due...
CVE-2021-1353
- EPSS 0.52%
- Published 20.01.2021 20:15:17
- Last modified 21.11.2024 05:44:09
A vulnerability in the IPv4 protocol handling of Cisco StarOS could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a memory leak that occurs during packet proc...
CVE-2021-1145
- EPSS 0.26%
- Published 13.01.2021 22:15:14
- Last modified 21.11.2024 05:43:41
A vulnerability in the Secure FTP (SFTP) of Cisco StarOS for Cisco ASR 5000 Series Routers could allow an authenticated, remote attacker to read arbitrary files on an affected device. To exploit this vulnerability, the attacker would need to have val...
CVE-2020-3602
- EPSS 0.13%
- Published 08.10.2020 05:15:15
- Last modified 21.11.2024 05:31:23
A vulnerability in the CLI of Cisco StarOS operating system for Cisco ASR 5000 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. The vulnerability is due to insufficient input validation of CLI c...
CVE-2020-3601
- EPSS 0.11%
- Published 08.10.2020 05:15:15
- Last modified 21.11.2024 05:31:23
A vulnerability in the CLI of Cisco StarOS operating system for Cisco ASR 5000 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. The vulnerability is due to insufficient input validation of CLI c...