Cisco

Ios Xe

551 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.03%
  • Veröffentlicht 25.09.2019 21:15:10
  • Zuletzt bearbeitet 21.11.2024 04:23:17

A vulnerability in the filesystem resource management code of Cisco IOS XE Software could allow an unauthenticated, remote attacker to exhaust filesystem resources on an affected device and cause a denial of service (DoS) condition. The vulnerability...

  • EPSS 1.03%
  • Veröffentlicht 25.09.2019 20:15:10
  • Zuletzt bearbeitet 21.11.2024 04:23:15

A vulnerability in the Network Address Translation (NAT) Session Initiation Protocol (SIP) Application Layer Gateway (ALG) of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerabili...

  • EPSS 1.16%
  • Veröffentlicht 25.09.2019 20:15:10
  • Zuletzt bearbeitet 21.11.2024 04:23:15

A vulnerability in the Ident protocol handler of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability exists because the affected software incorrectly handles memory st...

  • EPSS 0.03%
  • Veröffentlicht 25.09.2019 20:15:10
  • Zuletzt bearbeitet 21.11.2024 04:23:15

A vulnerability in the Image Verification feature of Cisco IOS XE Software could allow an authenticated, local attacker to install and boot a malicious software image or execute unsigned binaries on an affected device. The vulnerability exists becaus...

  • EPSS 13.42%
  • Veröffentlicht 25.09.2019 20:15:10
  • Zuletzt bearbeitet 21.11.2024 04:23:15

Multiple vulnerabilities in the web-based user interface (Web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker to execute commands with elevated privileges on the affected device. For more information about these vulnerabili...

  • EPSS 15.41%
  • Veröffentlicht 28.08.2019 19:15:10
  • Zuletzt bearbeitet 21.11.2024 04:23:14

A vulnerability in the Cisco REST API virtual service container for Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass authentication on the managed Cisco IOS XE device. The vulnerability is due to an improper check perfo...

  • EPSS 2.81%
  • Veröffentlicht 21.08.2019 19:15:13
  • Zuletzt bearbeitet 21.11.2024 04:23:12

A vulnerability in the web-based management interface of Cisco IOS XE New Generation Wireless Controller (NGWC) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an ...

  • EPSS 0.5%
  • Veröffentlicht 21.06.2019 03:15:09
  • Zuletzt bearbeitet 21.11.2024 04:37:39

A vulnerability in the web-based UI (web UI) of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protectio...

  • EPSS 0.73%
  • Veröffentlicht 13.05.2019 20:29:03
  • Zuletzt bearbeitet 21.11.2024 04:37:33

A vulnerability in the web-based user interface (Web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vulnerability occurs bec...

  • EPSS 0.4%
  • Veröffentlicht 13.05.2019 19:29:01
  • Zuletzt bearbeitet 21.11.2024 04:37:00

A vulnerability in the logic that handles access control to one of the hardware components in Cisco's proprietary Secure Boot implementation could allow an authenticated, local attacker to write a modified firmware image to the component. This vulner...