- EPSS 0.02%
- Veröffentlicht 13.09.2023 17:15:09
- Zuletzt bearbeitet 21.11.2024 07:40:38
A vulnerability in Cisco IOS XR Software image verification checks could allow an authenticated, local attacker to execute arbitrary code on the underlying operating system. This vulnerability is due to a time-of-check, time-of-use (TOCTOU) race c...
CVE-2023-20190
- EPSS 0.06%
- Veröffentlicht 13.09.2023 17:15:09
- Zuletzt bearbeitet 21.11.2024 07:40:47
A vulnerability in the classic access control list (ACL) compression feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass the protection that is offered by a configured ACL on an affected device. This vulnerab...
CVE-2023-20191
- EPSS 0.05%
- Veröffentlicht 13.09.2023 17:15:09
- Zuletzt bearbeitet 21.11.2024 07:40:47
A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direction of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass a configured ACL. This vulnerability is due to incomplete su...
CVE-2023-20233
- EPSS 0.15%
- Veröffentlicht 13.09.2023 17:15:09
- Zuletzt bearbeitet 21.11.2024 07:40:57
A vulnerability in the Connectivity Fault Management (CFM) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to incorrect ...
CVE-2023-20236
- EPSS 0.02%
- Veröffentlicht 13.09.2023 17:15:09
- Zuletzt bearbeitet 21.11.2024 07:40:57
A vulnerability in the iPXE boot function of Cisco IOS XR software could allow an authenticated, local attacker to install an unverified software image on an affected device. This vulnerability is due to insufficient image verification. An attacke...
CVE-2023-20049
- EPSS 1.26%
- Veröffentlicht 09.03.2023 22:15:52
- Zuletzt bearbeitet 21.11.2024 07:40:26
A vulnerability in the bidirectional forwarding detection (BFD) hardware offload feature of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers, ASR 9902 Compact High-Performance Routers, and ASR 9903 Compact High-Performance...
CVE-2023-20064
- EPSS 0.11%
- Veröffentlicht 09.03.2023 22:15:52
- Zuletzt bearbeitet 21.11.2024 07:40:28
A vulnerability in the GRand Unified Bootloader (GRUB) for Cisco IOS XR Software could allow an unauthenticated attacker with physical access to the device to view sensitive files on the console using the GRUB bootloader command line. This vulnerabil...
CVE-2022-20821
- EPSS 13.18%
- Veröffentlicht 26.05.2022 14:15:08
- Zuletzt bearbeitet 24.02.2025 15:24:27
A vulnerability in the health check RPM of Cisco IOS XR Software could allow an unauthenticated, remote attacker to access the Redis instance that is running within the NOSi container. This vulnerability exists because the health check RPM opens TCP ...
CVE-2022-20714
- EPSS 1.91%
- Veröffentlicht 15.04.2022 15:15:13
- Zuletzt bearbeitet 21.11.2024 06:43:23
A vulnerability in the data plane microcode of Lightspeed-Plus line cards for Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, remote attacker to cause the line card to reset. This vulnerability is due to the incorre...
CVE-2022-20758
- EPSS 0.81%
- Veröffentlicht 15.04.2022 15:15:13
- Zuletzt bearbeitet 21.11.2024 06:43:29
A vulnerability in the implementation of the Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is ...