VendorsCiscoios_xe16.9.3a
Vulnerabilities

Cisco IOS Xe 16.9.3a

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

70CVEs
CVE-2021-1403
Cisco IOS XE Software Web UI Cross-Site WebSocket Hijacking Vulnerability
Published 2021-03-24 · Modified
7.4EPSS 0.006
CVE-2022-20684
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family SNMP Trap Denial of Service Vulnerability
Published 2022-04-15 · Modified
7.4EPSS 0.005
CVE-2021-1352
Cisco IOS XE Software DECnet Phase IV/OSI Denial of Service Vulnerability
Published 2021-03-24 · Modified
7.4EPSS 0.004
CVE-2025-20140
A vulnerability in the Wireless Network Control daemon (wncd) of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, adjacent wireless attacker to cause a denial of service (DoS) condition. This vulnerability is due to improper memory management. An attacker could exploit this vulnerability by sending a series of IPv6 network requests from an associated wireless IPv6 client to an affected device. To associate a client to a device, an attacker may first need to authenticate to the network, or associate freely in the case of a configured open network. A successful exploit could allow the attacker to cause the wncd process to consume available memory and eventually cause the device to stop responding, resulting in a DoS condition.
Published 2025-05-07 · Analyzed
7.4EPSS 0.002
CVE-2025-20189
A vulnerability in the Cisco Express Forwarding functionality of Cisco IOS XE Software for Cisco ASR 903 Aggregation Services Routers with Route Switch Processor 3 (RSP3C) could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition. This vulnerability is due to improper memory management when Cisco IOS XE Software is processing Address Resolution Protocol (ARP) messages. An attacker could exploit this vulnerability by sending crafted ARP messages at a high rate over a period of time to an affected device. A successful exploit could allow the attacker to exhaust system resources, which eventually triggers a reload of the active route switch processor (RSP). If a redundant RSP is not present, the router reloads.
Published 2025-05-07 · Analyzed
7.4EPSS 0.002
CVE-2023-20273
A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to inject commands with the privileges of root. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web UI. A successful exploit could allow the attacker to inject commands to the underlying operating system with root privileges.
Published 2023-10-24 · Analyzed
7.2KEVEPSS 0.896
CVE-2022-20727
Cisco IOx Application Hosting Environment Vulnerabilities
Published 2022-04-15 · Modified
7.2EPSS 0.011
CVE-2020-3207
Cisco IOS XE Software Command Injection Vulnerability
Published 2020-06-03 · Modified
7.2EPSS 0.006
CVE-2017-12239
A vulnerability in motherboard console ports of line cards for Cisco ASR 1000 Series Aggregation Services Routers and Cisco cBR-8 Converged Broadband Routers could allow an unauthenticated, physical attacker to access an affected device's operating system. The vulnerability exists because an engineering console port is available on the motherboard of the affected line cards. An attacker could exploit this vulnerability by physically connecting to the console port on the line card. A successful exploit could allow the attacker to gain full access to the affected device's operating system. This vulnerability affects only Cisco ASR 1000 Series Routers that have removable line cards and Cisco cBR-8 Converged Broadband Routers, if they are running certain Cisco IOS XE 3.16 through 16.5 releases. Cisco Bug IDs: CSCvc65866, CSCve77132.
Published 2017-09-28 · Modified
7.2EPSS 0.004
CVE-2020-3213
Cisco IOS XE Software Privilege Escalation Vulnerability
Published 2020-06-03 · Modified
7.2EPSS 0.004
CVE-2020-3417
Cisco IOS XE Software Arbitrary Code Execution Vulnerability
Published 2020-09-24 · Modified
7.2EPSS 0.004
CVE-2020-3215
Cisco IOS XE Software Privilege Escalation Vulnerability
Published 2020-06-03 · Modified
7.2EPSS 0.004
CVE-2021-1390
Cisco IOS XE Software Local Privilege Escalation Vulnerability
Published 2021-03-24 · Modified
7.2EPSS 0.003
CVE-2021-1391
Cisco IOS and IOS XE Software Privilege Escalation Vulnerability
Published 2021-03-24 · Modified
7.2EPSS 0.003
CVE-2021-1375
Cisco IOS XE Software Fast Reload Vulnerabilities
Published 2021-03-24 · Modified
7.2EPSS 0.002
CVE-2021-1376
Cisco IOS XE Software Fast Reload Vulnerabilities
Published 2021-03-24 · Modified
7.2EPSS 0.002
CVE-2022-20694
Cisco IOS XE Software Border Gateway Protocol Resource Public Key Infrastructure Denial of Service Vulnerability
Published 2022-04-15 · Modified
7.1EPSS 0.012
CVE-2020-3220
Cisco IOS XE Software IPsec VPN Denial of Service Vulnerability
Published 2020-06-03 · Modified
7.1EPSS 0.005
CVE-2021-1398
Cisco IOS XE Software Arbitrary Code Execution Vulnerability
Published 2021-03-24 · Modified
6.9EPSS 0.004
CVE-2022-20722
Cisco IOx Application Hosting Environment Vulnerabilities
Published 2022-04-15 · Modified
6.8EPSS 0.013
CVE-2022-20721
Cisco IOx Application Hosting Environment Vulnerabilities
Published 2022-04-15 · Modified
6.8EPSS 0.013
CVE-2025-20201
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device. This vulnerability is due to insufficient input validation when processing specific configuration commands. An attacker could exploit this vulnerability by including crafted input in specific configuration commands. A successful exploit could allow the attacker to elevate privileges to root on the underlying operating system of an affected device. The security impact rating (SIR) of this advisory has been raised to High because an attacker could gain access to the underlying operating system of the affected device and perform potentially undetected actions. Note: The attacker must have privileges to enter configuration mode on the affected device. This is usually referred to as privilege level 15.
Published 2025-05-07 · Analyzed
6.7EPSS 0.002
CVE-2025-20338
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with administrative privileges to execute arbitrary commands as root on the underlying operating system of an affected device. This vulnerability is due to insufficient validation of user arguments that are passed to specific CLI commands. An attacker could exploit this vulnerability by logging in to the device CLI with valid administrative (level 15) credentials and using crafted commands at the CLI prompt. A successful exploit could allow the attacker to execute arbitrary commands as root.
Published 2025-09-24 · Analyzed
6.7EPSS 0.002
CVE-2024-20414
A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system through the web UI. This vulnerability is due to incorrectly accepting configuration changes through the HTTP GET method. An attacker could exploit this vulnerability by persuading a currently authenticated administrator to follow a crafted link. A successful exploit could allow the attacker to change the configuration of the affected device.
Published 2024-09-25 · Analyzed
6.5EPSS 0.003
CVE-2021-1377
Cisco IOS and IOS XE Software ARP Resource Management Exhaustion Denial of Service Vulnerability
Published 2021-03-24 · Modified
5.8EPSS 0.014
CVE-2024-20316
A vulnerability in the data model interface (DMI) services of Cisco IOS XE Software could allow an unauthenticated, remote attacker to access resources that should have been protected by a configured IPv4 access control list (ACL). This vulnerability is due to improper handling of error conditions when a successfully authorized device administrator updates an IPv4 ACL using the NETCONF or RESTCONF protocol, and the update would reorder access control entries (ACEs) in the updated ACL. An attacker could exploit this vulnerability by accessing resources that should have been protected across an affected device.
Published 2024-03-27 · Analyzed
5.8EPSS 0.005
CVE-2024-20309
A vulnerability in auxiliary asynchronous port (AUX) functions of Cisco IOS XE Software could allow an authenticated, local attacker to cause an affected device to reload or stop responding. This vulnerability is due to the incorrect handling of specific ingress traffic when flow control hardware is enabled on the AUX port. An attacker could exploit this vulnerability by reverse telnetting to the AUX port and sending specific data after connecting. A successful exploit could allow the attacker to cause the device to reset or stop responding, resulting in a denial of service (DoS) condition.
Published 2024-03-27 · Analyzed
5.6EPSS 0.001
CVE-2022-20725
Cisco IOx Application Hosting Environment Vulnerabilities
Published 2022-04-15 · Modified
5.5EPSS 0.006
CVE-2021-1374
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family Stored Cross-Site Scripting Vulnerability
Published 2021-03-24 · Modified
4.8EPSS 0.006
CVE-2025-20195
A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to perform a CSRF attack and execute commands on the CLI of an affected device. This vulnerability is due to insufficient CSRF protections for the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading an already authenticated user to follow a crafted link. A successful exploit could allow the attacker to clear the syslog, parser, and licensing logs on the affected device if the targeted user has privileges to clear those logs.
Published 2025-05-07 · Analyzed
4.3EPSS 0.002
← Prev2 / 2