CVE-2025-20199
- EPSS 0.01%
- Veröffentlicht 07.05.2025 17:43:26
- Zuletzt bearbeitet 08.07.2025 13:48:55
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device. This vulnerability is due to insuffici...
CVE-2025-20198
- EPSS 0.01%
- Veröffentlicht 07.05.2025 17:42:41
- Zuletzt bearbeitet 08.07.2025 13:56:57
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device. This vulnerability is due to insuffici...
CVE-2025-20197
- EPSS 0.01%
- Veröffentlicht 07.05.2025 17:39:56
- Zuletzt bearbeitet 08.07.2025 13:57:47
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device. This vulnerability is due to insuffici...
CVE-2025-20221
- EPSS 0.02%
- Veröffentlicht 07.05.2025 17:38:49
- Zuletzt bearbeitet 11.07.2025 14:43:38
A vulnerability in the packet filtering features of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to bypass Layer 3 and Layer 4 traffic filters. This vulnerability is due to improper traffic filtering conditions on ...
CVE-2025-20162
- EPSS 0.11%
- Veröffentlicht 07.05.2025 17:38:25
- Zuletzt bearbeitet 11.07.2025 14:58:36
A vulnerability in the DHCP snooping security feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a full interface queue wedge, which could result in a denial of service (DoS) condition. This vulnerability is ...
CVE-2025-20196
- EPSS 0.05%
- Veröffentlicht 07.05.2025 17:38:10
- Zuletzt bearbeitet 11.07.2025 14:55:33
A vulnerability in the Cisco IOx application hosting environment of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the Cisco IOx application hosting environment to stop responding, resulting in a...
CVE-2025-20186
- EPSS 0.23%
- Veröffentlicht 07.05.2025 17:37:53
- Zuletzt bearbeitet 11.07.2025 14:58:11
A vulnerability in the web-based management interface of the Wireless LAN Controller feature of Cisco IOS XE Software could allow an authenticated, remote attacker with a lobby ambassador user account to perform a command injection attack against an ...
- EPSS 0.02%
- Veröffentlicht 07.05.2025 17:37:05
- Zuletzt bearbeitet 31.07.2025 15:12:21
A vulnerability in the bootstrap loading of Cisco IOS XE Software could allow an authenticated, local attacker to write arbitrary files to an affected system. This vulnerability is due to insufficient input validation of the bootstrap file that is...
CVE-2025-20140
- EPSS 0.02%
- Veröffentlicht 07.05.2025 17:36:49
- Zuletzt bearbeitet 31.07.2025 16:56:47
A vulnerability in the Wireless Network Control daemon (wncd) of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, adjacent wireless attacker to cause a denial of service (DoS) condition. This vulnerability ...
CVE-2025-20192
- EPSS 0.15%
- Veröffentlicht 07.05.2025 17:36:16
- Zuletzt bearbeitet 08.05.2025 14:39:09
A vulnerability in the Internet Key Exchange version 1 (IKEv1) implementation of Cisco IOS XE Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The attacker must have valid IKEv1 VPN credentials to e...