VendorsCiscoios_xrall versions
Vulnerabilities

Cisco IOS Xr

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

198CVEs
CVE-2008-0960
SNMPv3 HMAC verification in (1) Net-SNMP 5.2.x before 5.2.4.1, 5.3.x before 5.3.2.1, and 5.4.x before 5.4.1.1; (2) UCD-SNMP; (3) eCos; (4) Juniper Session and Resource Control (SRC) C-series 1.0.0 through 2.0.0; (5) NetApp (aka Network Appliance) Data ONTAP 7.3RC1 and 7.3RC2; (6) SNMP Research before 16.2; (7) multiple Cisco IOS, CatOS, ACE, and Nexus products; (8) Ingate Firewall 3.1.0 and later and SIParator 3.1.0 and later; (9) HP OpenView SNMP Emanate Master Agent 15.x; and possibly other products relies on the client to specify the HMAC length, which makes it easier for remote attackers to bypass SNMP authentication via a length value of 1, which only checks the first byte.
Published 2008-06-10 · Modified
10.01 PoCEPSS 0.688
CVE-2020-3284
Cisco IOS XR Software Enhanced Preboot eXecution Environment Unsigned Code Execution Vulnerability
Published 2020-11-06 · Modified
9.8EPSS 0.029
CVE-2019-1710
Cisco IOS XR 64-Bit Software for Cisco ASR 9000 Series Aggregation Services Routers Network Isolation Vulnerability
Published 2019-04-17 · Modified
9.8EPSS 0.028
CVE-2026-20274
Cisco IOS XR Software Security Hardening Release: September 2026
Published 2026-09-02 · Analyzed
9.8EPSS 0.007
CVE-2025-20363
A vulnerability in the web services of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Cisco Secure Firewall Threat Defense (FTD) Software, Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, remote attacker (Cisco ASA and FTD Software) or authenticated, remote attacker (Cisco IOS, IOS XE, and IOS XR Software) with low user privileges to execute arbitrary code on an affected device. This vulnerability is due to improper validation of user-supplied input in HTTP requests. An attacker could exploit this vulnerability by sending crafted HTTP requests to a targeted web service on an affected device after obtaining additional information about the system, overcoming exploit mitigations, or both. A successful exploit could allow the attacker to execute arbitrary code as root, which may lead to the complete compromise of the affected device. For more information about this vulnerability, see the Details ["#details"] section of this advisory.
Published 2025-09-25 · Analyzed
9.0EPSS 0.069
CVE-2021-40120
Cisco Small Business RV Series Routers Command Injection Vulnerability
Published 2021-11-04 · Modified
9.0EPSS 0.020
CVE-2020-3118
Cisco IOS XR Software Cisco Discovery Protocol Format String Vulnerability
Published 2020-02-05 · Analyzed
8.8KEVEPSS 0.117
CVE-2018-0167
Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. Cisco Bug IDs: CSCuo17183, CSCvd73487.
Published 2018-03-28 · Analyzed
8.8KEVEPSS 0.034
CVE-2024-20381
Cisco Network Services Orchestrator Configuration Update Authorization Bypass Vulnerability
Published 2024-09-11 · Analyzed
8.8EPSS 0.006
CVE-2026-20280
Cisco IOS XR Software Security Hardening Release: September 2026
Published 2026-09-02 · Analyzed
8.8EPSS 0.003
CVE-2025-20138
Cisco IOS XR Software CLI Privilege Escalation Vulnerability
Published 2025-03-12 · Analyzed
8.8EPSS 0.002
CVE-2024-20398
Cisco IOS XR Software Local Privilege Escalation Vulnerability
Published 2024-09-11 · Analyzed
8.8EPSS 0.002
CVE-2026-20040
Cisco IOS XR Software CLI Privilege Escalation Vulnerability
Published 2026-03-11 · Analyzed
8.8EPSS 0.002
CVE-2026-20046
Cisco IOS XR Software CLI Privilege Escalation Vulnerability
Published 2026-03-11 · Analyzed
8.8EPSS 0.001
CVE-2018-0418
A vulnerability in the Local Packet Transport Services (LPTS) feature set of Cisco ASR 9000 Series Aggregation Services Router Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of input and validation checking on certain Precision Time Protocol (PTP) ingress traffic to an affected device. An attacker could exploit this vulnerability by injecting malformed traffic into an affected device. A successful exploit could allow the attacker to cause services on the device to become unresponsive, resulting in a DoS condition. Cisco Bug IDs: CSCvj22858.
Published 2018-08-15 · Modified
8.6EPSS 0.040
CVE-2020-3566
Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability
Published 2020-08-29 · Analyzed
8.6KEVEPSS 0.037
CVE-2020-3569
Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerabilities
Published 2020-09-23 · Analyzed
8.6KEVEPSS 0.033
CVE-2018-0136
A vulnerability in the IPv6 subsystem of Cisco IOS XR Software Release 5.3.4 for the Cisco Aggregation Services Router (ASR) 9000 Series could allow an unauthenticated, remote attacker to trigger a reload of one or more Trident-based line cards, resulting in a denial of service (DoS) condition. The vulnerability is due to incorrect handling of IPv6 packets with a fragment header extension. An attacker could exploit this vulnerability by sending IPv6 packets designed to trigger the issue either to or through the Trident-based line card. A successful exploit could allow the attacker to trigger a reload of Trident-based line cards, resulting in a DoS during the period of time the line card takes to restart. This vulnerability affects Cisco Aggregation Services Router (ASR) 9000 Series when the following conditions are met: The router is running Cisco IOS XR Software Release 5.3.4, and the router has installed Trident-based line cards that have IPv6 configured. A software maintenance upgrade (SMU) has been made available that addresses this vulnerability. The fix has also been incorporated into service pack 7 for Cisco IOS XR Software Release 5.3.4. Cisco Bug IDs: CSCvg46800.
Published 2018-01-31 · Modified
8.6EPSS 0.027
CVE-2021-1288
Cisco IOS XR Software Enf Broker Denial of Service Vulnerability
Published 2021-02-04 · Modified
8.6EPSS 0.020
CVE-2021-1313
Cisco IOS XR Software Enf Broker Denial of Service Vulnerability
Published 2021-02-04 · Modified
8.6EPSS 0.020
CVE-2020-26070
Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers Slow Path Forwarding Denial of Service Vulnerability
Published 2020-11-12 · Modified
8.6EPSS 0.019
CVE-2019-1686
Cisco ASR 9000 Series Aggregation Services Routers ACL Bypass Vulnerability
Published 2019-04-17 · Modified
8.6EPSS 0.016
CVE-2022-20714
Cisco IOS XR Software for ASR 9000 Series Routers Lightspeed-Plus Line Cards Denial of Service Vulnerability
Published 2022-04-15 · Modified
8.6EPSS 0.015
CVE-2019-16021
Cisco IOS XR Software BGP EVPN Denial of Service Vulnerabilities
Published 2020-09-23 · Modified
8.6EPSS 0.015
CVE-2019-16023
Cisco IOS XR Software BGP EVPN Denial of Service Vulnerabilities
Published 2020-09-23 · Modified
8.6EPSS 0.013
CVE-2019-15989
Cisco IOS XR Software Border Gateway Protocol Attribute Denial of Service Vulnerability
Published 2020-01-26 · Modified
8.6EPSS 0.013
CVE-2019-16022
Cisco IOS XR Software BGP EVPN Denial of Service Vulnerabilities
Published 2020-01-26 · Modified
8.6EPSS 0.013
CVE-2019-16020
Cisco IOS XR Software BGP EVPN Denial of Service Vulnerabilities
Published 2020-01-26 · Modified
8.6EPSS 0.013
CVE-2019-16019
Cisco IOS XR Software BGP EVPN Denial of Service Vulnerabilities
Published 2020-09-23 · Modified
8.6EPSS 0.013
CVE-2021-34720
Cisco IOS XR Software IP Service Level Agreements and Two-Way Active Measurement Protocol Denial of Service Vulnerability
Published 2021-09-09 · Modified
8.6EPSS 0.013
CVE-2023-20049
Cisco IOS XR Software for ASR 9000 Series Routers Bidirectional Forwarding Detection Denial of Service Vulnerability
Published 2023-03-09 · Modified
8.6EPSS 0.010
CVE-2025-20115
Cisco IOS XR Software Border Gateway Protocol Denial of Service Vulnerability
Published 2025-03-12 · Analyzed
8.6EPSS 0.009
CVE-2024-20304
Cisco IOS XR Software Packet Memory Exhaustion Vulnerability
Published 2024-09-11 · Analyzed
8.6EPSS 0.006
CVE-2025-20142
Cisco IOS XR Software for ASR 9000 Series Routers L2VPN Denial of Service Vulnerability
Published 2025-03-12 · Analyzed
8.6EPSS 0.005
CVE-2025-20146
Cisco IOS XR Software for ASR 9000 Series Routers Layer 3 Multicast Routing Denial of Service Vulnerability
Published 2025-03-12 · Analyzed
8.6EPSS 0.005
CVE-2025-20154
Cisco IOS, IOS XE and IOS XR Software TWAMP Denial of Service Vulnerability
Published 2025-05-07 · Analyzed
8.6EPSS 0.005
CVE-2026-20276
Cisco IOS XR Software Security Hardening Release: September 2026
Published 2026-09-02 · Analyzed
8.6EPSS 0.003
CVE-2021-34718
Cisco IOS XR Software Arbitrary File Read and Write Vulnerability
Published 2021-09-09 · Modified
8.5EPSS 0.016
CVE-2020-3530
Cisco IOS XR Authenticated User Privilege Escalation Vulnerability
Published 2020-09-04 · Modified
8.4EPSS 0.003
CVE-2024-20489
Cisco Routed Passive Optical Network Cleartext Password Vulnerability
Published 2024-09-11 · Analyzed
8.4EPSS 0.001
1 / 5Next →