CVE-2023-20066
- EPSS 0.48%
- Published 23.03.2023 17:15:14
- Last modified 21.11.2024 07:40:28
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to perform a directory traversal and access resources that are outside the filesystem mountpoint of the web UI. This vulnerability is due to an insuf...
CVE-2023-20067
- EPSS 0.05%
- Published 23.03.2023 17:15:14
- Last modified 21.11.2024 07:40:28
A vulnerability in the HTTP-based client profiling feature of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnera...
CVE-2023-20072
- EPSS 0.7%
- Published 23.03.2023 17:15:14
- Last modified 21.11.2024 07:40:29
A vulnerability in the fragmentation handling code of tunnel protocol packets in Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected system to reload, resulting in a denial of service (DoS) condition. This vulne...
CVE-2023-20080
- EPSS 0.14%
- Published 23.03.2023 17:15:14
- Last modified 21.11.2024 07:40:30
A vulnerability in the IPv6 DHCP version 6 (DHCPv6) relay and server features of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition. This vulnerability is due to insufficient v...
CVE-2023-20081
- EPSS 0.12%
- Published 23.03.2023 17:15:14
- Last modified 21.11.2024 07:40:30
A vulnerability in the IPv6 DHCP (DHCPv6) client module of Cisco Adaptive Security Appliance (ASA) Software, Cisco Firepower Threat Defense (FTD) Software, Cisco IOS Software, and Cisco IOS XE Software could allow an unauthenticated, remote attacker ...
CVE-2023-20082
- EPSS 0.13%
- Published 23.03.2023 17:15:14
- Last modified 21.11.2024 07:40:30
A vulnerability in Cisco IOS XE Software for Cisco Catalyst 9300 Series Switches could allow an authenticated, local attacker with level-15 privileges or an unauthenticated attacker with physical access to the device to execute persistent code at boo...
CVE-2023-20027
- EPSS 0.63%
- Published 23.03.2023 17:15:13
- Last modified 21.11.2024 07:40:23
A vulnerability in the implementation of the IPv4 Virtual Fragmentation Reassembly (VFR) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnera...
CVE-2023-20029
- EPSS 0.02%
- Published 23.03.2023 17:15:13
- Last modified 21.11.2024 07:40:23
A vulnerability in the Meraki onboarding feature of Cisco IOS XE Software could allow an authenticated, local attacker to gain root level privileges on an affected device. This vulnerability is due to insufficient memory protection in the Meraki onbo...
CVE-2023-20076
- EPSS 0.55%
- Published 12.02.2023 04:15:19
- Last modified 21.11.2024 07:40:29
A vulnerability in the Cisco IOx application hosting environment could allow an authenticated, remote attacker to execute arbitrary commands as root on the underlying host operating system. This vulnerability is due to incomplete sanitization of para...
CVE-2022-20837
- EPSS 0.28%
- Published 10.10.2022 21:15:10
- Last modified 21.11.2024 06:43:39
A vulnerability in the DNS application layer gateway (ALG) functionality that is used by Network Address Translation (NAT) in Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerabil...