VendorsCiscoasr_1002-xany version
Vulnerabilities

Cisco ASR 1002-X any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

76CVEs
CVE-2017-12240
The DHCP relay subsystem of Cisco IOS 12.2 through 15.6 and Cisco IOS XE Software contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code and gain full control of an affected system. The attacker could also cause an affected system to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to a buffer overflow condition in the DHCP relay subsystem of the affected software. An attacker could exploit this vulnerability by sending a crafted DHCP Version 4 (DHCPv4) packet to an affected system. A successful exploit could allow the attacker to execute arbitrary code and gain full control of the affected system or cause the affected system to reload, resulting in a DoS condition. Cisco Bug IDs: CSCsm45390, CSCuw77959.
Published 2017-09-28 · Analyzed
10.0KEVEPSS 0.138
CVE-2021-34727
Cisco IOS XE SD-WAN Software Buffer Overflow Vulnerability
Published 2021-09-23 · Modified
10.0EPSS 0.026
CVE-2020-3425
Cisco IOS XE Software Privilege Escalation Vulnerabilities
Published 2020-09-24 · Modified
8.8EPSS 0.018
CVE-2020-3141
Cisco IOS XE Software Privilege Escalation Vulnerabilities
Published 2020-09-24 · Modified
8.8EPSS 0.018
CVE-2019-1904
Cisco IOS XE Software Web UI Cross-Site Request Forgery Vulnerability
Published 2019-06-21 · Modified
8.8EPSS 0.010
CVE-2018-0173
A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 information in DHCP Version 4 (DHCPv4) packets could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a Relay Reply denial of service (DoS) condition. The vulnerability exists because the affected software performs incomplete input validation of encapsulated option 82 information that it receives in DHCPOFFER messages from DHCPv4 servers. An attacker could exploit this vulnerability by sending a crafted DHCPv4 packet to an affected device, which the device would then forward to a DHCPv4 server. When the affected software processes the option 82 information that is encapsulated in the response from the server, an error could occur. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition. Cisco Bug IDs: CSCvg62754.
Published 2018-03-28 · Analyzed
8.6KEVEPSS 0.076
CVE-2018-0158
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a memory leak or a reload of an affected device that leads to a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certain IKEv2 packets. An attacker could exploit this vulnerability by sending crafted IKEv2 packets to an affected device to be processed. A successful exploit could cause an affected device to continuously consume memory and eventually reload, resulting in a DoS condition. Cisco Bug IDs: CSCvf22394.
Published 2018-03-28 · Analyzed
8.6KEVEPSS 0.072
CVE-2019-12647
Cisco IOS and IOS XE Software IP Ident Denial of Service Vulnerability
Published 2019-09-25 · Modified
8.6EPSS 0.020
CVE-2019-12654
Cisco IOS and IOS XE Software Session Initiation Protocol Denial of Service Vulnerability
Published 2019-09-25 · Modified
8.6EPSS 0.020
CVE-2019-12657
Cisco IOS XE Software Unified Threat Defense Denial of Service Vulnerability
Published 2019-09-25 · Modified
8.6EPSS 0.020
CVE-2020-3421
Cisco IOS XE Software Zone-Based Firewall Denial of Service Vulnerabilities
Published 2020-09-24 · Modified
8.6EPSS 0.019
CVE-2020-3408
Cisco IOS and IOS XE Software Split DNS Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.016
CVE-2020-3407
Cisco IOS XE Software RESTCONF and NETCONF-YANG Access Control List Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.015
CVE-2020-3480
Cisco IOS XE Software Zone-Based Firewall Denial of Service Vulnerabilities
Published 2020-09-24 · Modified
8.6EPSS 0.014
CVE-2021-1624
Cisco IOS XE Software Rate Limiting Network Address Translation Denial of Service Vulnerability
Published 2021-09-23 · Modified
8.6EPSS 0.013
CVE-2020-3422
Cisco IOS XE Software IP Service Level Agreements Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.013
CVE-2022-20919
Cisco IOS and IOS XE Software Common Industrial Protocol Request Denial of Service Vulnerability
Published 2022-09-30 · Modified
8.6EPSS 0.011
CVE-2022-20678
Cisco IOS XE Software AppNav-XE Denial of Service Vulnerability
Published 2022-04-15 · Modified
8.6EPSS 0.010
CVE-2022-20848
Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst 9100 Series Access Points UDP Processing Denial of Service Vulnerability
Published 2022-09-30 · Modified
8.6EPSS 0.009
CVE-2019-1950
Cisco IOS XE SD-WAN Software Default Credentials Vulnerability
Published 2020-02-19 · Modified
8.4EPSS 0.003
CVE-2020-3475
Cisco IOS XE Software Web Management Framework Vulnerabilities
Published 2020-09-24 · Modified
8.1EPSS 0.014
CVE-2020-3474
Cisco IOS XE Software Web Management Framework Vulnerabilities
Published 2020-09-24 · Modified
8.1EPSS 0.009
CVE-2022-20775
Cisco SD-WAN Software Privilege Escalation Vulnerability
Published 2022-09-30 · Analyzed
7.8KEVEPSS 0.125
CVE-2017-12231
A vulnerability in the implementation of Network Address Translation (NAT) functionality in Cisco IOS 12.4 through 15.6 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to the improper translation of H.323 messages that use the Registration, Admission, and Status (RAS) protocol and are sent to an affected device via IPv4 packets. An attacker could exploit this vulnerability by sending a crafted H.323 RAS packet through an affected device. A successful exploit could allow the attacker to cause the affected device to crash and reload, resulting in a DoS condition. This vulnerability affects Cisco devices that are configured to use an application layer gateway with NAT (NAT ALG) for H.323 RAS messages. By default, a NAT ALG is enabled for H.323 RAS messages. Cisco Bug IDs: CSCvc57217.
Published 2017-09-28 · Analyzed
7.8KEVEPSS 0.071
CVE-2017-12237
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS 15.0 through 15.6 and Cisco IOS XE 3.5 through 16.5 could allow an unauthenticated, remote attacker to cause high CPU utilization, traceback messages, or a reload of an affected device that leads to a denial of service (DoS) condition. The vulnerability is due to how an affected device processes certain IKEv2 packets. An attacker could exploit this vulnerability by sending specific IKEv2 packets to an affected device to be processed. A successful exploit could allow the attacker to cause high CPU utilization, traceback messages, or a reload of the affected device that leads to a DoS condition. This vulnerability affects Cisco devices that have the Internet Security Association and Key Management Protocol (ISAKMP) enabled. Although only IKEv2 packets can be used to trigger this vulnerability, devices that are running Cisco IOS Software or Cisco IOS XE Software are vulnerable when ISAKMP is enabled. A device does not need to be configured with any IKEv2-specific features to be vulnerable. Many features use IKEv2, including different types of VPNs such as the following: LAN-to-LAN VPN; Remote-access VPN, excluding SSL VPN; Dynamic Multipoint VPN (DMVPN); and FlexVPN. Cisco Bug IDs: CSCvc41277.
Published 2017-09-28 · Analyzed
7.8KEVEPSS 0.071
CVE-2018-0154
A vulnerability in the crypto engine of the Cisco Integrated Services Module for VPN (ISM-VPN) running Cisco IOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient handling of VPN traffic by the affected device. An attacker could exploit this vulnerability by sending crafted VPN traffic to an affected device. A successful exploit could allow the attacker to cause the affected device to hang or crash, resulting in a DoS condition. Cisco Bug IDs: CSCvd39267.
Published 2018-03-28 · Analyzed
7.8KEVEPSS 0.071
CVE-2018-0177
A vulnerability in the IP Version 4 (IPv4) processing code of Cisco IOS XE Software running on Cisco Catalyst 3850 and Cisco Catalyst 3650 Series Switches could allow an unauthenticated, remote attacker to cause high CPU utilization, traceback messages, or a reload of an affected device that leads to a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certain IPv4 packets. An attacker could exploit this vulnerability by sending specific IPv4 packets to an IPv4 address on an affected device. A successful exploit could allow the attacker to cause high CPU utilization, traceback messages, or a reload of the affected device that leads to a DoS condition. If the switch does not reboot when under attack, it would require manual intervention to reload the device. This vulnerability affects Cisco Catalyst 3850 and Cisco Catalyst 3650 Series Switches that are running Cisco IOS XE Software Release 16.1.1 or later, until the first fixed release, and are configured with an IPv4 address. Cisco Bug IDs: CSCvd80714.
Published 2018-03-28 · Modified
7.8EPSS 0.038
CVE-2015-6271
Cisco IOS XE 2.1.0 through 2.4.3 and 2.5.0 on ASR 1000 devices, when NAT Application Layer Gateway is used, allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted SIP packet, aka Bug IDs CSCta74749 and CSCta77008.
Published 2015-08-31 · Modified
7.8EPSS 0.020
CVE-2013-2779
Cisco IOS XE 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR) does not properly implement the Cisco Multicast Leaf Recycle Elimination (MLRE) feature, which allows remote attackers to cause a denial of service (card reload) via fragmented IPv6 MVPN (aka MVPNv6) packets, aka Bug ID CSCub34945, a different vulnerability than CVE-2013-1164.
Published 2013-04-11 · Modified
7.8EPSS 0.020
CVE-2015-6269
Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted (1) IPv4 or (2) IPv6 packet, aka Bug ID CSCsw69990.
Published 2015-08-31 · Modified
7.8EPSS 0.019
CVE-2015-6270
Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted IPv6 packet, aka Bug ID CSCsv98555.
Published 2015-08-31 · Modified
7.8EPSS 0.019
CVE-2015-6267
Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted L2TP packet, aka Bug IDs CSCsw95722 and CSCsw95496.
Published 2015-08-29 · Modified
7.8EPSS 0.019
CVE-2015-6272
Cisco IOS XE 2.1.0 through 2.2.3 and 2.3.0 on ASR 1000 devices, when NAT Application Layer Gateway is used, allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted H.323 packet, aka Bug ID CSCsx35393, CSCsx07094, and CSCsw93064.
Published 2015-08-31 · Modified
7.8EPSS 0.019
CVE-2015-6273
Cisco IOS XE before 3.1.2S on ASR 1000 devices mishandles the automatic setup of Virtual Fragment Reassembly (VFR) by certain firewall and NAT components, which allows remote attackers to cause a denial of service (Embedded Services Processor crash) via crafted IP packets, aka Bug IDs CSCtf87624, CSCte93229, CSCtd19103, and CSCti63623.
Published 2015-08-29 · Modified
7.8EPSS 0.019
CVE-2013-1164
Cisco IOS XE 3.4 before 3.4.4S, 3.5, and 3.6 on 1000 series Aggregation Services Routers (ASR) does not properly implement the Cisco Multicast Leaf Recycle Elimination (MLRE) feature, which allows remote attackers to cause a denial of service (card reload) via fragmented IPv6 multicast packets, aka Bug ID CSCtz97563.
Published 2013-04-11 · Modified
7.8EPSS 0.019
CVE-2013-5547
Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) by sending malformed EoGRE packets over (1) IPv4 or (2) IPv6, aka Bug ID CSCuf08269.
Published 2013-10-31 · Modified
7.8EPSS 0.019
CVE-2013-5543
Cisco IOS XE 3.4 before 3.4.2S and 3.5 before 3.5.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via malformed ICMP error packets associated with a (1) TCP or (2) UDP session that is under inspection by the Zone-Based Firewall (ZBFW) component, aka Bug ID CSCtt26470.
Published 2013-10-31 · Modified
7.8EPSS 0.019
CVE-2013-1165
Cisco IOS XE 2.x and 3.x before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR) allows remote attackers to cause a denial of service (card reload) by sending many crafted L2TP packets, aka Bug ID CSCtz23293.
Published 2013-04-11 · Modified
7.8EPSS 0.019
CVE-2013-5545
The PPTP ALG implementation in Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) by sending many PPTP packets over NAT, aka Bug ID CSCuh19936.
Published 2013-10-31 · Modified
7.8EPSS 0.019
CVE-2013-1166
Cisco IOS XE 3.2 through 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR), when VRF-aware NAT and SIP ALG are enabled, allows remote attackers to cause a denial of service (card reload) by sending many SIP packets, aka Bug ID CSCuc65609.
Published 2013-04-11 · Modified
7.8EPSS 0.019
1 / 2Next →