CVE-2024-20414
- EPSS 0.09%
- Veröffentlicht 25.09.2024 17:15:15
- Zuletzt bearbeitet 02.10.2024 20:02:22
A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system through the web UI. This vulnerabilit...
CVE-2024-20433
- EPSS 0.42%
- Veröffentlicht 25.09.2024 17:15:15
- Zuletzt bearbeitet 03.10.2024 13:34:37
A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (...
CVE-2024-20307
- EPSS 1.5%
- Veröffentlicht 27.03.2024 18:15:09
- Zuletzt bearbeitet 30.07.2025 12:59:13
A vulnerability in the IKEv1 fragmentation code of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a heap overflow, resulting in an affected device reloading. This vulnerability exists because ...
CVE-2024-20312
- EPSS 0.05%
- Veröffentlicht 27.03.2024 17:15:52
- Zuletzt bearbeitet 26.08.2025 21:15:33
A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. ...
CVE-2024-20276
- EPSS 0.14%
- Veröffentlicht 27.03.2024 17:15:51
- Zuletzt bearbeitet 05.08.2025 14:44:12
A vulnerability in Cisco IOS Software for Cisco Catalyst 6000 Series Switches could allow an unauthenticated, adjacent attacker to cause an affected device to reload unexpectedly. This vulnerability is due to improper handling of process-switched ...
CVE-2023-20186
- EPSS 0.11%
- Veröffentlicht 27.09.2023 18:15:11
- Zuletzt bearbeitet 21.11.2024 07:40:46
A vulnerability in the Authentication, Authorization, and Accounting (AAA) feature of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to bypass command authorization and copy files to or from the file system...
CVE-2023-20109
- EPSS 0.76%
- Veröffentlicht 27.09.2023 18:15:10
- Zuletzt bearbeitet 24.02.2025 15:23:16
A vulnerability in the Cisco Group Encrypted Transport VPN (GET VPN) feature of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker who has administrative control of either a group member or a key server to exec...
CVE-2023-20080
- EPSS 0.14%
- Veröffentlicht 23.03.2023 17:15:14
- Zuletzt bearbeitet 21.11.2024 07:40:30
A vulnerability in the IPv6 DHCP version 6 (DHCPv6) relay and server features of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition. This vulnerability is due to insufficient v...
CVE-2023-20081
- EPSS 0.12%
- Veröffentlicht 23.03.2023 17:15:14
- Zuletzt bearbeitet 21.11.2024 07:40:30
A vulnerability in the IPv6 DHCP (DHCPv6) client module of Cisco Adaptive Security Appliance (ASA) Software, Cisco Firepower Threat Defense (FTD) Software, Cisco IOS Software, and Cisco IOS XE Software could allow an unauthenticated, remote attacker ...
CVE-2022-20920
- EPSS 0.28%
- Veröffentlicht 10.10.2022 21:15:10
- Zuletzt bearbeitet 01.08.2025 15:09:46
A vulnerability in the SSH implementation of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause an affected device to reload. This vulnerability is due to improper handling of resources during an excep...