VendorsCiscoios_xe17.1.1
Vulnerabilities

Cisco IOS Xe 17.1.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

91CVEs
CVE-2024-20309
A vulnerability in auxiliary asynchronous port (AUX) functions of Cisco IOS XE Software could allow an authenticated, local attacker to cause an affected device to reload or stop responding. This vulnerability is due to the incorrect handling of specific ingress traffic when flow control hardware is enabled on the AUX port. An attacker could exploit this vulnerability by reverse telnetting to the AUX port and sending specific data after connecting. A successful exploit could allow the attacker to cause the device to reset or stop responding, resulting in a denial of service (DoS) condition.
Published 2024-03-27 · Analyzed
5.6EPSS 0.001
CVE-2022-20725
Cisco IOx Application Hosting Environment Vulnerabilities
Published 2022-04-15 · Modified
5.5EPSS 0.006
CVE-2024-20324
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, low-privileged, local attacker to access WLAN configuration details including passwords. This vulnerability is due to improper privilege checks. An attacker could exploit this vulnerability by using the show and show tech wireless CLI commands to access configuration details, including passwords. A successful exploit could allow the attacker to access configuration details that they are not authorized to access.
Published 2024-03-27 · Analyzed
5.5EPSS 0.001
CVE-2025-20196
A vulnerability in the Cisco IOx application hosting environment of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the Cisco IOx application hosting environment to stop responding, resulting in a denial of service (DoS) condition. This vulnerability is due to the improper handling of HTTP requests. An attacker could exploit this vulnerability by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to cause the Cisco IOx application hosting environment to stop responding. The IOx process will need to be manually restarted to recover services.
Published 2025-05-07 · Analyzed
5.3EPSS 0.004
CVE-2021-1374
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family Stored Cross-Site Scripting Vulnerability
Published 2021-03-24 · Modified
4.8EPSS 0.006
CVE-2020-3418
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family Improper Access Control Vulnerability
Published 2020-09-24 · Modified
4.7EPSS 0.004
CVE-2021-1436
Cisco IOS XE SD-WAN Software Path Traversal Vulnerability
Published 2021-03-24 · Modified
4.7EPSS 0.003
CVE-2021-1220
Cisco IOS XE Software Web UI Denial of Service Vulnerabilities
Published 2021-03-24 · Modified
4.3EPSS 0.009
CVE-2021-1356
Cisco IOS XE Software Web UI Denial of Service Vulnerabilities
Published 2021-03-24 · Modified
4.3EPSS 0.009
CVE-2024-20434
A vulnerability in Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on the control plane of an affected device. This vulnerability is due to improper handling of frames with VLAN tag information. An attacker could exploit this vulnerability by sending crafted frames to an affected device. A successful exploit could allow the attacker to render the control plane of the affected device unresponsive. The device would not be accessible through the console or CLI, and it would not respond to ping requests, SNMP requests, or requests from other control plane protocols. Traffic that is traversing the device through the data plane is not affected. A reload of the device is required to restore control plane services.
Published 2024-09-25 · Analyzed
4.3EPSS 0.003
CVE-2025-20195
A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to perform a CSRF attack and execute commands on the CLI of an affected device. This vulnerability is due to insufficient CSRF protections for the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading an already authenticated user to follow a crafted link. A successful exploit could allow the attacker to clear the syslog, parser, and licensing logs on the affected device if the targeted user has privileges to clear those logs.
Published 2025-05-07 · Analyzed
4.3EPSS 0.002
← Prev3 / 3