CVE-2025-20327
- EPSS 0.15%
- Published 24.09.2025 18:15:36
- Last modified 26.09.2025 14:32:53
A vulnerability in the web UI of Cisco IOS Software could allow an authenticated, remote attacker with low privileges to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper input validation. An at...
CVE-2025-20160
- EPSS 0.08%
- Published 24.09.2025 18:15:34
- Last modified 26.09.2025 14:32:53
A vulnerability in the implementation of the TACACS+ protocol in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to view sensitive data or bypass authentication. This vulnerability exists because the s...
CVE-2025-20149
- EPSS 0.03%
- Published 24.09.2025 18:15:33
- Last modified 26.09.2025 14:32:53
A vulnerability in the CLI of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, local attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due...
CVE-2025-20253
- EPSS 0.15%
- Published 14.08.2025 16:29:43
- Last modified 15.08.2025 13:12:51
A vulnerability in the IKEv2 feature of Cisco IOS Software, IOS XE Software, Secure Firewall ASA Software, and Secure FTD Software could allow an unauthenticated, remote attacker to cause the device to reload, resulting in a DoS condition. This vu...
CVE-2025-20239
- EPSS 0.15%
- Published 14.08.2025 16:29:17
- Last modified 15.08.2025 13:12:51
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Firewall Adaptive Security Appliance (ASA) Software, and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticate...
CVE-2025-20225
- EPSS 0.13%
- Published 14.08.2025 16:28:59
- Last modified 15.08.2025 13:12:51
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Firewall Adaptive Security Appliance (ASA) Software, and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticate...
CVE-2025-20196
- EPSS 0.05%
- Published 07.05.2025 17:38:10
- Last modified 11.07.2025 14:55:33
A vulnerability in the Cisco IOx application hosting environment of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the Cisco IOx application hosting environment to stop responding, resulting in a...
CVE-2025-20164
- EPSS 0.16%
- Published 07.05.2025 17:36:33
- Last modified 08.05.2025 14:39:09
A vulnerability in the Cisco Industrial Ethernet Switch Device Manager (DM) of Cisco IOS Software could allow an authenticated, remote attacker to elevate privileges. This vulnerability is due to insufficient validation of authorizations for authe...
CVE-2025-20181
- EPSS 0.04%
- Published 07.05.2025 17:35:31
- Last modified 04.08.2025 18:51:54
A vulnerability in Cisco IOS Software for Cisco Catalyst 2960X, 2960XR, 2960CX, and 3560CX Series Switches could allow an authenticated, local attacker with privilege level 15 or an unauthenticated attacker with physical access to the device to execu...
CVE-2025-20137
- EPSS 0.02%
- Published 07.05.2025 17:31:45
- Last modified 05.08.2025 14:08:32
A vulnerability in the access control list (ACL) programming of Cisco IOS Software that is running on Cisco Catalyst 1000 Switches and Cisco Catalyst 2960L Switches could allow an unauthenticated, remote attacker to bypass a configured ACL. This v...