VendorsCiscoios15.9\(3\)m
Vulnerabilities

Cisco IOS 15.9\(3\)m

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

18CVEs
CVE-2020-3198
Cisco IOS Software for Cisco Industrial Routers Arbitrary Code Execution Vulnerabilities
Published 2020-06-03 · Modified
10.0EPSS 0.045
CVE-2020-3217
Cisco IOS, IOS XE, IOS XR, and NX-OS Software One Platform Kit Remote Code Execution Vulnerability
Published 2020-06-03 · Modified
8.8EPSS 0.011
CVE-2020-3205
Cisco IOS Software for Cisco Industrial Routers Virtual Device Server Inter-VM Channel Command Injection Vulnerability
Published 2020-06-03 · Modified
8.8EPSS 0.010
CVE-2020-3199
Cisco IOx Application Environment for IOS Software for Cisco Industrial Routers Vulnerabilities
Published 2020-06-03 · Modified
8.8EPSS 0.007
CVE-2020-3228
Cisco IOS, IOS XE, and NX-OS Software Security Group Tag Exchange Protocol Denial of Service Vulnerability
Published 2020-06-03 · Modified
8.6EPSS 0.018
CVE-2024-20311
A vulnerability in the Locator ID Separation Protocol (LISP) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability is due to the incorrect handling of LISP packets. An attacker could exploit this vulnerability by sending a crafted LISP packet to an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a denial of service (DoS) condition. Note: This vulnerability could be exploited over either IPv4 or IPv6 transport.
Published 2024-03-27 · Analyzed
8.6EPSS 0.008
CVE-2026-20301
Cisco IOS Software and IOS XE Software Extensible Messaging Client Protocol Denial of Service Vulnerability
Published 2026-08-05 · Analyzed
8.6EPSS 0.006
CVE-2025-20160
A vulnerability in the implementation of the TACACS+ protocol in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to view sensitive data or bypass authentication. This vulnerability exists because the system does not properly check whether the required TACACS+ shared secret is configured. A machine-in-the-middle attacker could exploit this vulnerability by intercepting and reading unencrypted TACACS+ messages or impersonating the TACACS+ server and falsely accepting arbitrary authentication requests. A successful exploit could allow the attacker to view sensitive information in a TACACS+ message or bypass authentication and gain access to the affected device.
Published 2025-09-24 · Analyzed
8.1EPSS 0.004
CVE-2025-20174
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper error handling when parsing SNMP requests. An attacker could exploit this vulnerability by sending a crafted SNMP request to an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly, resulting in a DoS condition.  This vulnerability affects SNMP versions 1, 2c, and 3. To exploit this vulnerability through SNMP v2c or earlier, the attacker must know a valid read-write or read-only SNMP community string for the affected system. To exploit this vulnerability through SNMP v3, the attacker must have valid SNMP user credentials for the affected system.
Published 2025-02-05 · Analyzed
7.7EPSS 0.008
CVE-2022-20724
Cisco IOx Application Hosting Environment Vulnerabilities
Published 2022-04-15 · Modified
7.6EPSS 0.013
CVE-2022-20726
Cisco IOx Application Hosting Environment Vulnerabilities
Published 2022-04-15 · Modified
7.5EPSS 0.011
CVE-2024-20307
A vulnerability in the IKEv1 fragmentation code of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a heap overflow, resulting in an affected device reloading. This vulnerability exists because crafted, fragmented IKEv1 packets are not properly reassembled. An attacker could exploit this vulnerability by sending crafted UDP packets to an affected system. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition. Note: Only traffic that is directed to the affected system can be used to exploit this vulnerability. This vulnerability can be triggered by IPv4 and IPv6 traffic.
Published 2024-03-27 · Analyzed
7.5EPSS 0.007
CVE-2022-20761
Cisco 1000 Series Connected Grid Router Integrated Wireless Access Point Denial of Service Vulnerability
Published 2022-04-15 · Modified
7.4EPSS 0.004
CVE-2022-20727
Cisco IOx Application Hosting Environment Vulnerabilities
Published 2022-04-15 · Modified
7.2EPSS 0.011
CVE-2020-3210
Cisco IOS Software for Cisco Industrial Routers Virtual Device Server CLI Command Injection Vulnerability
Published 2020-06-03 · Modified
7.2EPSS 0.004
CVE-2021-1385
Cisco IOx Application Environment Path Traversal Vulnerability
Published 2021-03-24 · Modified
6.5EPSS 0.027
CVE-2021-1377
Cisco IOS and IOS XE Software ARP Resource Management Exhaustion Denial of Service Vulnerability
Published 2021-03-24 · Modified
5.8EPSS 0.014
CVE-2022-20725
Cisco IOx Application Hosting Environment Vulnerabilities
Published 2022-04-15 · Modified
5.5EPSS 0.006