CVE-2024-20308
- EPSS 0.91%
- Published 27.03.2024 18:15:09
- Last modified 30.06.2025 15:13:39
A vulnerability in the IKEv1 fragmentation code of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a heap underflow, resulting in an affected device reloading. This vulnerability exists because...
CVE-2024-20316
- EPSS 0.26%
- Published 27.03.2024 17:15:53
- Last modified 30.07.2025 13:25:44
A vulnerability in the data model interface (DMI) services of Cisco IOS XE Software could allow an unauthenticated, remote attacker to access resources that should have been protected by a configured IPv4 access control list (ACL). This vulnerabil...
CVE-2024-20324
- EPSS 0.07%
- Published 27.03.2024 17:15:53
- Last modified 30.07.2025 13:00:20
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, low-privileged, local attacker to access WLAN configuration details including passwords. This vulnerability is due to improper privilege checks. An attacker could ex...
CVE-2024-20354
- EPSS 0.06%
- Published 27.03.2024 17:15:53
- Last modified 13.08.2025 17:18:10
A vulnerability in the handling of encrypted wireless frames of Cisco Aironet Access Point (AP) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on the affected device. This vulnerability is d...
CVE-2024-20306
- EPSS 0.02%
- Published 27.03.2024 17:15:52
- Last modified 30.07.2025 14:04:55
A vulnerability in the Unified Threat Defense (UTD) configuration CLI of Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary commands as root on the underlying host operating system. To exploit this vulnerability, ...
CVE-2024-20309
- EPSS 0.04%
- Published 27.03.2024 17:15:52
- Last modified 30.07.2025 13:54:53
A vulnerability in auxiliary asynchronous port (AUX) functions of Cisco IOS XE Software could allow an authenticated, local attacker to cause an affected device to reload or stop responding. This vulnerability is due to the incorrect handling of s...
CVE-2024-20311
- EPSS 1.07%
- Published 27.03.2024 17:15:52
- Last modified 30.07.2025 13:43:14
A vulnerability in the Locator ID Separation Protocol (LISP) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability is due to the incorrect ...
CVE-2024-20312
- EPSS 0.05%
- Published 27.03.2024 17:15:52
- Last modified 26.08.2025 21:15:33
A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. ...
CVE-2024-20314
- EPSS 1.07%
- Published 27.03.2024 17:15:52
- Last modified 30.07.2025 13:33:12
A vulnerability in the IPv4 Software-Defined Access (SD-Access) fabric edge node feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause high CPU utilization and stop all traffic processing, resulting in a denial of ...
CVE-2024-20271
- EPSS 0.42%
- Published 27.03.2024 17:15:51
- Last modified 06.08.2025 13:45:24
A vulnerability in the IP packet processing of Cisco Access Point (AP) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input val...