CVE-2020-3417
- EPSS 0.36%
- Veröffentlicht 24.09.2020 18:15:18
- Zuletzt bearbeitet 21.11.2024 05:31:00
A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to execute persistent code at boot time and break the chain of trust. This vulnerability is due to incorrect validations by boot scripts when specific ROM monitor (...
CVE-2020-3418
- EPSS 0.41%
- Veröffentlicht 24.09.2020 18:15:18
- Zuletzt bearbeitet 21.11.2024 05:31:00
A vulnerability in Cisco IOS XE Wireless Controller Software for Cisco Catalyst 9800 Series Routers could allow an unauthenticated, adjacent attacker to send ICMPv6 traffic prior to the client being placed into RUN state. The vulnerability is due to ...
CVE-2020-3421
- EPSS 1.93%
- Veröffentlicht 24.09.2020 18:15:18
- Zuletzt bearbeitet 21.11.2024 05:31:01
Multiple vulnerabilities in the Zone-Based Firewall feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the device to reload or stop forwarding traffic through the firewall. The vulnerabilities are due to incompl...
CVE-2020-3141
- EPSS 1.78%
- Veröffentlicht 24.09.2020 18:15:17
- Zuletzt bearbeitet 21.11.2024 05:30:24
Multiple vulnerabilities in the web management framework of Cisco IOS XE Software could allow an authenticated, remote attacker with read-only privileges to elevate privileges to the level of an Administrator user on an affected device. For more info...
CVE-2020-3359
- EPSS 1.51%
- Veröffentlicht 24.09.2020 18:15:17
- Zuletzt bearbeitet 19.12.2024 13:52:35
A vulnerability in the multicast DNS (mDNS) feature of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to...
CVE-2020-3390
- EPSS 0.64%
- Veröffentlicht 24.09.2020 18:15:17
- Zuletzt bearbeitet 19.12.2024 13:52:35
A vulnerability in Simple Network Management Protocol (SNMP) trap generation for wireless clients of the Cisco IOS XE Wireless Controller Software for the Cisco Catalyst 9000 Family could allow an unauthenticated, adjacent attacker to cause the devic...
CVE-2020-3393
- EPSS 0.34%
- Veröffentlicht 24.09.2020 18:15:17
- Zuletzt bearbeitet 19.12.2024 13:52:35
A vulnerability in the application-hosting subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to root on an affected device. The attacker could execute IOS XE commands outside the application-hosting...
CVE-2020-3396
- EPSS 0.32%
- Veröffentlicht 24.09.2020 18:15:17
- Zuletzt bearbeitet 21.11.2024 05:30:56
A vulnerability in the file system on the pluggable USB 3.0 Solid State Drive (SSD) for Cisco IOS XE Software could allow an authenticated, physical attacker to remove the USB 3.0 SSD and modify sensitive areas of the file system, including the names...
CVE-2020-3399
- EPSS 1.36%
- Veröffentlicht 24.09.2020 18:15:17
- Zuletzt bearbeitet 21.11.2024 05:30:57
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of s...
CVE-2020-3400
- EPSS 0.98%
- Veröffentlicht 24.09.2020 18:15:17
- Zuletzt bearbeitet 21.11.2024 05:30:57
A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to utilize parts of the web UI for which they are not authorized.The vulnerability is due to insufficient authorization of web UI access requ...