Cisco

Ios Xe

554 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.07%
  • Published 24.03.2021 20:15:14
  • Last modified 21.11.2024 05:44:21

A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to conduct path traversal attacks and obtain read access to sensitive files on an affected system. This vulnerability is due to insufficient valid...

  • EPSS 0.54%
  • Published 24.03.2021 20:15:13
  • Last modified 21.11.2024 05:44:12

A vulnerability in Address Resolution Protocol (ARP) management of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to prevent an affected device from resolving ARP entries for legitimate hosts on the conne...

Exploit
  • EPSS 0.07%
  • Published 24.03.2021 20:15:13
  • Last modified 21.11.2024 05:44:13

A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitrary commands to be executed with root privileges on the underlying operating system. This vulnerability is due to insufficient inp...

Exploit
  • EPSS 0.15%
  • Published 24.03.2021 20:15:13
  • Last modified 21.11.2024 05:44:13

Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to access the underlying operating system with root privileges. These vulnerabilities are due to insufficient input validation of certain...

Exploit
  • EPSS 16.12%
  • Published 24.03.2021 20:15:13
  • Last modified 21.11.2024 05:44:13

A vulnerability in Cisco IOx application hosting environment of Cisco IOS XE Software could allow an authenticated, remote attacker to inject commands into the underlying operating system as the root user. This vulnerability is due to incomplete vali...

Exploit
  • EPSS 0.44%
  • Published 24.03.2021 20:15:13
  • Last modified 21.11.2024 05:44:13

A vulnerability in the Cisco IOx application hosting environment of multiple Cisco platforms could allow an authenticated, remote attacker to conduct directory traversal attacks and read and write files on the underlying operating system or host syst...

  • EPSS 0.04%
  • Published 24.03.2021 20:15:13
  • Last modified 21.11.2024 05:44:14

A vulnerability in one of the diagnostic test CLI commands of Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary code on an affected device. To exploit this vulnerability, the attacker would need to have valid use...

  • EPSS 0.04%
  • Published 24.03.2021 20:15:13
  • Last modified 21.11.2024 05:44:14

A vulnerability in the dragonite debugger of Cisco IOS XE Software could allow an authenticated, local attacker to escalate from privilege level 15 to root privilege. The vulnerability is due to the presence of development testing and verification sc...

  • EPSS 0.42%
  • Published 13.01.2021 22:15:20
  • Last modified 26.11.2024 16:09:02

Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrect handling of an HTTP range he...

  • EPSS 0.37%
  • Published 13.01.2021 22:15:20
  • Last modified 26.11.2024 16:09:02

Multiple Cisco products are affected by a vulnerability with TCP Fast Open (TFO) when used in conjunction with the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerabil...