CVE-2025-20149
- EPSS 0.03%
- Veröffentlicht 24.09.2025 18:15:33
- Zuletzt bearbeitet 26.09.2025 14:32:53
A vulnerability in the CLI of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, local attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due...
CVE-2025-20334
- EPSS 0.11%
- Veröffentlicht 24.09.2025 17:15:40
- Zuletzt bearbeitet 24.09.2025 18:11:24
A vulnerability in the HTTP API subsystem of Cisco IOS XE Software could allow a remote attacker to inject commands that will execute with root privileges into the underlying operating system. This vulnerability is due to insufficient input valida...
CVE-2025-20253
- EPSS 0.15%
- Veröffentlicht 14.08.2025 16:29:43
- Zuletzt bearbeitet 15.08.2025 13:12:51
A vulnerability in the IKEv2 feature of Cisco IOS Software, IOS XE Software, Secure Firewall ASA Software, and Secure FTD Software could allow an unauthenticated, remote attacker to cause the device to reload, resulting in a DoS condition. This vu...
CVE-2025-20239
- EPSS 0.15%
- Veröffentlicht 14.08.2025 16:29:17
- Zuletzt bearbeitet 15.08.2025 13:12:51
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Firewall Adaptive Security Appliance (ASA) Software, and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticate...
CVE-2025-20225
- EPSS 0.13%
- Veröffentlicht 14.08.2025 16:28:59
- Zuletzt bearbeitet 15.08.2025 13:12:51
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Firewall Adaptive Security Appliance (ASA) Software, and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticate...
CVE-2025-20195
- EPSS 0.04%
- Veröffentlicht 07.05.2025 17:49:05
- Zuletzt bearbeitet 11.07.2025 14:57:14
A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to perform a CSRF attack and execute commands on the CLI of an affected device. This vulnerability is due to insufficie...
CVE-2025-20194
- EPSS 0.04%
- Veröffentlicht 07.05.2025 17:48:13
- Zuletzt bearbeitet 11.07.2025 14:57:37
A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privileged, remote attacker to perform an injection attack against an affected device. This vulnerability is due to insufficient inpu...
CVE-2025-20193
- EPSS 0.05%
- Veröffentlicht 07.05.2025 17:46:39
- Zuletzt bearbeitet 11.07.2025 14:57:48
A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privileged, remote attacker to perform an injection attack against an affected device.r This vulnerability is due to insufficient input...
CVE-2025-20201
- EPSS 0.01%
- Veröffentlicht 07.05.2025 17:44:57
- Zuletzt bearbeitet 01.08.2025 18:33:35
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device. This vulnerability is due to insuffici...
CVE-2025-20200
- EPSS 0.01%
- Veröffentlicht 07.05.2025 17:44:05
- Zuletzt bearbeitet 11.07.2025 14:44:54
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device. This vulnerability is due to insuffici...