VendorsCiscocatalyst_9800-l-fany version
Vulnerabilities

Cisco Catalyst 9800-l-f - any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

52CVEs
CVE-2020-3494
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Denial of Service Vulnerabilities
Published 2020-09-24 · Modified
7.4EPSS 0.004
CVE-2022-20851
Cisco IOS XE Software Web UI Command Injection Vulnerability
Published 2022-09-30 · Modified
7.2EPSS 0.010
CVE-2020-3214
Cisco IOS XE Software Privilege Escalation Vulnerability
Published 2020-06-03 · Modified
7.2EPSS 0.004
CVE-2017-12319
A vulnerability in the Border Gateway Protocol (BGP) over an Ethernet Virtual Private Network (EVPN) for Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the device to reload, resulting in a denial of service (DoS) condition, or potentially corrupt the BGP routing table, which could result in network instability. The vulnerability exists due to changes in the implementation of the BGP MPLS-Based Ethernet VPN RFC (RFC 7432) draft between IOS XE software releases. When the BGP Inclusive Multicast Ethernet Tag Route or BGP EVPN MAC/IP Advertisement Route update packet is received, it could be possible that the IP address length field is miscalculated. An attacker could exploit this vulnerability by sending a crafted BGP packet to an affected device after the BGP session was established. An exploit could allow the attacker to cause the affected device to reload or corrupt the BGP routing table; either outcome would result in a DoS. The vulnerability may be triggered when the router receives a crafted BGP message from a peer on an existing BGP session. This vulnerability affects all releases of Cisco IOS XE Software prior to software release 16.3 that support BGP EVPN configurations. If the device is not configured for EVPN, it is not vulnerable. Cisco Bug IDs: CSCui67191, CSCvg52875.
Published 2018-03-27 · Analyzed
7.1KEVEPSS 0.052
CVE-2018-0180
Multiple vulnerabilities in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attacker to trigger a reload of an affected system, resulting in a denial of service (DoS) condition. These vulnerabilities affect Cisco devices that are running Cisco IOS Software Release 15.4(2)T, 15.4(3)M, or 15.4(2)CG and later. Cisco Bug IDs: CSCuy32360, CSCuz60599.
Published 2018-03-28 · Analyzed
7.1KEVEPSS 0.049
CVE-2018-0179
Multiple vulnerabilities in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attacker to trigger a reload of an affected system, resulting in a denial of service (DoS) condition. These vulnerabilities affect Cisco devices that are running Cisco IOS Software Release 15.4(2)T, 15.4(3)M, or 15.4(2)CG and later. Cisco Bug IDs: CSCuy32360, CSCuz60599.
Published 2018-03-28 · Analyzed
7.1KEVEPSS 0.049
CVE-2021-34703
Cisco IOS and IOS XE Software Link Layer Discovery Protocol Denial of Service Vulnerability
Published 2021-09-23 · Modified
6.8EPSS 0.012
CVE-2023-20100
Cisco IOS XE Software for Wireless LAN Controllers CAPWAP Join Denial of Service Vulnerability
Published 2023-03-23 · Modified
6.8EPSS 0.008
CVE-2023-20066
Cisco IOS XE Software Web UI Path Traversal Vulnerability
Published 2023-03-23 · Modified
6.5EPSS 0.017
CVE-2022-20810
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family SNMP Information Disclosure Vulnerability
Published 2022-09-30 · Modified
6.5EPSS 0.007
CVE-2020-3503
Cisco IOS XE Software Guest Shell Unauthorized File System Access Vulnerability
Published 2020-09-24 · Modified
6.0EPSS 0.003
CVE-2020-3418
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family Improper Access Control Vulnerability
Published 2020-09-24 · Modified
4.7EPSS 0.004
← Prev2 / 2