VendorsCiscocatalyst_9800-80all versions
Vulnerabilities

Cisco Catalyst 9800-80 -

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

62CVEs
CVE-2021-34770
Cisco IOS XE Software for Catalyst 9000 Family Wireless Controllers CAPWAP Remote Code Execution Vulnerability
Published 2021-09-23 · Analyzed
10.0EPSS 0.030
CVE-2019-12650
Cisco IOS XE Software Web UI Command Injection Vulnerabilities
Published 2019-09-25 · Modified
9.0EPSS 0.289
CVE-2020-3425
Cisco IOS XE Software Privilege Escalation Vulnerabilities
Published 2020-09-24 · Modified
8.8EPSS 0.018
CVE-2020-3141
Cisco IOS XE Software Privilege Escalation Vulnerabilities
Published 2020-09-24 · Modified
8.8EPSS 0.018
CVE-2023-20231
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to perform an injection attack against an affected device. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web UI. A successful exploit could allow the attacker to execute arbitrary Cisco IOS XE Software CLI commands with level 15 privileges. Note: This vulnerability is exploitable only if the attacker obtains the credentials for a Lobby Ambassador account. This account is not configured by default.
Published 2023-09-27 · Modified
8.8EPSS 0.007
CVE-2020-3408
Cisco IOS and IOS XE Software Split DNS Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.016
CVE-2020-3407
Cisco IOS XE Software RESTCONF and NETCONF-YANG Access Control List Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.015
CVE-2020-3359
Cisco IOS XE Software for Catalyst 9800 Series Wireless Controllers Multicast DNS Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.015
CVE-2020-3221
Cisco IOS XE Software Flexible NetFlow Version 9 Denial of Service Vulnerability
Published 2020-06-03 · Modified
8.6EPSS 0.015
CVE-2021-1373
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Denial of Service Vulnerability
Published 2021-03-24 · Modified
8.6EPSS 0.015
CVE-2020-3560
Cisco Aironet Access Points UDP Flooding Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.014
CVE-2020-3559
Cisco Aironet Access Point Authentication Flood Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.014
CVE-2021-34769
Cisco IOS XE Software for Catalyst 9000 Family Wireless Controllers CAPWAP Denial of Service Vulnerabilities
Published 2021-09-23 · Modified
8.6EPSS 0.014
CVE-2021-34768
Cisco IOS XE Software for Catalyst 9000 Family Wireless Controllers CAPWAP Denial of Service Vulnerabilities
Published 2021-09-23 · Modified
8.6EPSS 0.014
CVE-2020-3492
Cisco IOS XE Software for Catalyst 9800 Series and Cisco AireOS Software for Cisco WLC Flexible NetFlow Version 9 Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.014
CVE-2020-3399
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.014
CVE-2021-1611
Cisco IOS XE Software for Catalyst 9800 Series Wireless Controllers EoGRE Denial of Service Vulnerability
Published 2021-09-23 · Modified
8.6EPSS 0.013
CVE-2021-1565
Cisco IOS XE Software for Catalyst 9000 Family Wireless Controllers CAPWAP Denial of Service Vulnerabilities
Published 2021-09-23 · Modified
8.6EPSS 0.013
CVE-2022-20856
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Mobility Denial of Service Vulnerability
Published 2022-09-30 · Modified
8.6EPSS 0.012
CVE-2022-20847
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family DHCP Processing Denial of Service Vulnerability
Published 2022-09-30 · Modified
8.6EPSS 0.012
CVE-2022-20919
Cisco IOS and IOS XE Software Common Industrial Protocol Request Denial of Service Vulnerability
Published 2022-09-30 · Modified
8.6EPSS 0.011
CVE-2022-20848
Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst 9100 Series Access Points UDP Processing Denial of Service Vulnerability
Published 2022-09-30 · Modified
8.6EPSS 0.009
CVE-2020-3203
Cisco IOS XE Software Catalyst 9800 Series Wireless Controllers Denial of Service Vulnerability
Published 2020-06-03 · Modified
8.6EPSS 0.008
CVE-2024-20259
A vulnerability in the DHCP snooping feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to a crafted IPv4 DHCP request packet being mishandled when endpoint analytics are enabled. An attacker could exploit this vulnerability by sending a crafted DHCP request through an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition. Note: The attack vector is listed as network because a DHCP relay anywhere on the network could allow exploits from networks other than the adjacent one.
Published 2024-03-27 · Analyzed
8.6EPSS 0.008
CVE-2020-3475
Cisco IOS XE Software Web Management Framework Vulnerabilities
Published 2020-09-24 · Modified
8.1EPSS 0.014
CVE-2020-3474
Cisco IOS XE Software Web Management Framework Vulnerabilities
Published 2020-09-24 · Modified
8.1EPSS 0.009
CVE-2022-20855
Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst Access Points Privilege Escalation Vulnerability
Published 2022-09-30 · Modified
7.9EPSS 0.004
CVE-2017-12231
A vulnerability in the implementation of Network Address Translation (NAT) functionality in Cisco IOS 12.4 through 15.6 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to the improper translation of H.323 messages that use the Registration, Admission, and Status (RAS) protocol and are sent to an affected device via IPv4 packets. An attacker could exploit this vulnerability by sending a crafted H.323 RAS packet through an affected device. A successful exploit could allow the attacker to cause the affected device to crash and reload, resulting in a DoS condition. This vulnerability affects Cisco devices that are configured to use an application layer gateway with NAT (NAT ALG) for H.323 RAS messages. By default, a NAT ALG is enabled for H.323 RAS messages. Cisco Bug IDs: CSCvc57217.
Published 2017-09-28 · Analyzed
7.8KEVEPSS 0.071
CVE-2018-0154
A vulnerability in the crypto engine of the Cisco Integrated Services Module for VPN (ISM-VPN) running Cisco IOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient handling of VPN traffic by the affected device. An attacker could exploit this vulnerability by sending crafted VPN traffic to an affected device. A successful exploit could allow the attacker to cause the affected device to hang or crash, resulting in a DoS condition. Cisco Bug IDs: CSCvd39267.
Published 2018-03-28 · Analyzed
7.8KEVEPSS 0.071
CVE-2020-3403
Cisco IOS XE Software Command Injection Vulnerability
Published 2020-09-24 · Modified
7.8EPSS 0.004
CVE-2020-3393
Cisco IOS XE Software IOx Application Hosting Privilege Escalation Vulnerability
Published 2020-09-24 · Modified
7.8EPSS 0.003
CVE-2020-3404
Cisco IOS XE Software Consent Token Bypass Vulnerability
Published 2020-09-24 · Modified
7.8EPSS 0.003
CVE-2021-1419
Cisco Access Points SSH Management Privilege Escalation Vulnerability
Published 2021-09-23 · Modified
7.8EPSS 0.002
CVE-2023-20065
A vulnerability in the Cisco IOx application hosting subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to root on an affected device. This vulnerability is due to insufficient restrictions on the hosted application. An attacker could exploit this vulnerability by logging in to and then escaping the Cisco IOx application container. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with root privileges.
Published 2023-03-23 · Modified
7.8EPSS 0.002
CVE-2021-34767
Cisco IOS XE Software for Catalyst 9800 Series Wireless Controllers IPv6 Denial of Service Vulnerability
Published 2021-09-23 · Analyzed
7.4EPSS 0.008
CVE-2020-3429
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family WPA Denial of Service Vulnerability
Published 2020-09-24 · Modified
7.4EPSS 0.007
CVE-2020-3390
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family SNMP Trap Denial of Service Vulnerability
Published 2020-09-24 · Modified
7.4EPSS 0.006
CVE-2020-3486
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Denial of Service Vulnerabilities
Published 2020-09-24 · Modified
7.4EPSS 0.006
CVE-2020-3488
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Denial of Service Vulnerabilities
Published 2020-09-24 · Modified
7.4EPSS 0.005
CVE-2020-3489
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Denial of Service Vulnerabilities
Published 2020-09-24 · Modified
7.4EPSS 0.005
1 / 2Next →