VendorsCiscoios_xrany version
Vulnerabilities

Cisco IOS Xr any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

94CVEs
CVE-2020-3284
Cisco IOS XR Software Enhanced Preboot eXecution Environment Unsigned Code Execution Vulnerability
Published 2020-11-06 · Modified
9.8EPSS 0.029
CVE-2019-1710
Cisco IOS XR 64-Bit Software for Cisco ASR 9000 Series Aggregation Services Routers Network Isolation Vulnerability
Published 2019-04-17 · Modified
9.8EPSS 0.028
CVE-2020-3118
Cisco IOS XR Software Cisco Discovery Protocol Format String Vulnerability
Published 2020-02-05 · Analyzed
8.8KEVEPSS 0.117
CVE-2018-0167
Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. Cisco Bug IDs: CSCuo17183, CSCvd73487.
Published 2018-03-28 · Analyzed
8.8KEVEPSS 0.034
CVE-2025-20138
Cisco IOS XR Software CLI Privilege Escalation Vulnerability
Published 2025-03-12 · Analyzed
8.8EPSS 0.002
CVE-2026-20040
Cisco IOS XR Software CLI Privilege Escalation Vulnerability
Published 2026-03-11 · Analyzed
8.8EPSS 0.002
CVE-2026-20046
Cisco IOS XR Software CLI Privilege Escalation Vulnerability
Published 2026-03-11 · Analyzed
8.8EPSS 0.001
CVE-2018-0418
A vulnerability in the Local Packet Transport Services (LPTS) feature set of Cisco ASR 9000 Series Aggregation Services Router Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of input and validation checking on certain Precision Time Protocol (PTP) ingress traffic to an affected device. An attacker could exploit this vulnerability by injecting malformed traffic into an affected device. A successful exploit could allow the attacker to cause services on the device to become unresponsive, resulting in a DoS condition. Cisco Bug IDs: CSCvj22858.
Published 2018-08-15 · Modified
8.6EPSS 0.040
CVE-2020-3569
Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerabilities
Published 2020-09-23 · Analyzed
8.6KEVEPSS 0.033
CVE-2021-1288
Cisco IOS XR Software Enf Broker Denial of Service Vulnerability
Published 2021-02-04 · Modified
8.6EPSS 0.020
CVE-2021-1313
Cisco IOS XR Software Enf Broker Denial of Service Vulnerability
Published 2021-02-04 · Modified
8.6EPSS 0.020
CVE-2020-26070
Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers Slow Path Forwarding Denial of Service Vulnerability
Published 2020-11-12 · Modified
8.6EPSS 0.019
CVE-2019-1686
Cisco ASR 9000 Series Aggregation Services Routers ACL Bypass Vulnerability
Published 2019-04-17 · Modified
8.6EPSS 0.016
CVE-2022-20714
Cisco IOS XR Software for ASR 9000 Series Routers Lightspeed-Plus Line Cards Denial of Service Vulnerability
Published 2022-04-15 · Modified
8.6EPSS 0.015
CVE-2021-34720
Cisco IOS XR Software IP Service Level Agreements and Two-Way Active Measurement Protocol Denial of Service Vulnerability
Published 2021-09-09 · Modified
8.6EPSS 0.013
CVE-2023-20049
Cisco IOS XR Software for ASR 9000 Series Routers Bidirectional Forwarding Detection Denial of Service Vulnerability
Published 2023-03-09 · Modified
8.6EPSS 0.010
CVE-2021-34718
Cisco IOS XR Software Arbitrary File Read and Write Vulnerability
Published 2021-09-09 · Modified
8.5EPSS 0.016
CVE-2020-3530
Cisco IOS XR Authenticated User Privilege Escalation Vulnerability
Published 2020-09-04 · Modified
8.4EPSS 0.003
CVE-2012-2488
Cisco IOS XR before 4.2.1 on ASR 9000 series devices and CRS series devices allows remote attackers to cause a denial of service (packet transmission outage) via a crafted packet, aka Bug IDs CSCty94537 and CSCtz62593.
Published 2012-05-31 · Modified
7.8EPSS 0.022
CVE-2020-3473
Cisco IOS XR Software Authenticated User Privilege Escalation Vulnerability
Published 2020-09-04 · Modified
7.8EPSS 0.004
CVE-2021-1370
Cisco IOS XR Software for Cisco 8000 Series Routers and Network Convergence System 540 Series Routers Privilege Escalation Vulnerability
Published 2021-02-04 · Modified
7.8EPSS 0.004
CVE-2021-1485
Cisco IOS XR Software Command Injection Vulnerability
Published 2021-04-08 · Modified
7.8EPSS 0.003
CVE-2021-34728
Cisco IOS XR Software Authenticated User Privilege Escalation Vulnerabilities
Published 2021-09-09 · Modified
7.8EPSS 0.003
CVE-2021-34719
Cisco IOS XR Software Authenticated User Privilege Escalation Vulnerabilities
Published 2021-09-09 · Modified
7.8EPSS 0.003
CVE-2023-20236
A vulnerability in the iPXE boot function of Cisco IOS XR software could allow an authenticated, local attacker to install an unverified software image on an affected device. This vulnerability is due to insufficient image verification. An attacker could exploit this vulnerability by manipulating the boot parameters for image verification during the iPXE boot process on an affected device. A successful exploit could allow the attacker to boot an unverified software image on the affected device.
Published 2023-09-13 · Modified
7.8EPSS 0.001
CVE-2023-44487
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Published 2023-10-10 · Analyzed
7.5KEV1 PoCEPSS 1.000
CVE-2016-6415
The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through 3.18S, IOS XR 4.3.x and 5.0.x through 5.2.x, and PIX before 7.0 allows remote attackers to obtain sensitive information from device memory via a Security Association (SA) negotiation request, aka Bug IDs CSCvb29204 and CSCvb36055 or BENIGNCERTAIN.
Published 2016-09-19 · Analyzed
7.5KEV1 PoCEPSS 0.877
CVE-2019-1681
Cisco Network Convergence System 1000 Series TFTP Directory Traversal Vulnerability
Published 2019-02-21 · Modified
7.5EPSS 0.063
CVE-2010-3035
Cisco IOS XR 3.4.0 through 3.9.1, when BGP is enabled, does not properly handle unrecognized transitive attributes, which allows remote attackers to cause a denial of service (peering reset) via a crafted prefix announcement, as demonstrated in the wild in August 2010 with attribute type code 99, aka Bug ID CSCti62211.
Published 2010-08-30 · Analyzed
7.5KEVEPSS 0.057
CVE-2019-1712
Cisco IOS XR Software Protocol Independent Multicast Denial of Service Vulnerability
Published 2019-04-17 · Modified
7.5EPSS 0.026
CVE-2019-1711
Cisco IOS XR gRPC Software Denial of Service Vulnerability
Published 2019-04-17 · Modified
7.5EPSS 0.023
CVE-2017-12270
A vulnerability in the gRPC code of Cisco IOS XR Software for Cisco Network Convergence System (NCS) 5500 Series Routers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition when the emsd service stops. The vulnerability is due to the software's inability to process HTTP/2 packets. An attacker could exploit this vulnerability by sending a malformed HTTP/2 frame to the affected device. A successful exploit could allow the attacker to create a DoS condition when the emsd service stops. Cisco Bug IDs: CSCvb99388.
Published 2017-10-05 · Modified
7.5EPSS 0.023
CVE-2014-3396
Cisco IOS XR on ASR 9000 devices does not properly use compression for port-range and address-range encoding, which allows remote attackers to bypass intended Typhoon line-card ACL restrictions via transit traffic, aka Bug ID CSCup30133.
Published 2014-10-05 · Modified
7.5EPSS 0.014
CVE-2021-34737
Cisco IOS XR Software DHCP Version 4 Server Denial of Service Vulnerability
Published 2021-09-09 · Modified
7.5EPSS 0.013
CVE-2021-1243
Cisco IOS XR Software SNMP Management Plane Protection ACL Bypass Vulnerability
Published 2021-02-04 · Modified
7.5EPSS 0.013
CVE-2023-20191
A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direction of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass a configured ACL. This vulnerability is due to incomplete support for this feature. An attacker could exploit this vulnerability by attempting to send traffic through an affected device. A successful exploit could allow the attacker to bypass an ACL on the affected device. There are workarounds that address this vulnerability. This advisory is part of the September 2023 release of the Cisco IOS XR Software Security Advisory Bundled Publication. For a complete list of the advisories and links to them, see Cisco Event Response: September 2023 Semiannual Cisco IOS XR Software Security Advisory Bundled Publication .
Published 2023-09-13 · Modified
7.5EPSS 0.006
CVE-2019-1849
Cisco IOS XR Software BGP MPLS-Based EVPN Denial of Service Vulnerability
Published 2019-05-16 · Modified
7.4EPSS 0.006
CVE-2019-1918
Cisco IOS XR Software Intermediate System–to–Intermediate System Denial of Service Vulnerability
Published 2019-08-07 · Modified
7.4EPSS 0.005
CVE-2021-1268
Cisco IOS XR Software IPv6 Flood Denial of Service Vulnerability
Published 2021-02-04 · Modified
7.4EPSS 0.005
CVE-2019-1910
Cisco IOS XR Software Intermediate System to Intermediate System Denial of Service Vulnerability
Published 2019-08-07 · Modified
7.4EPSS 0.004
1 / 3Next →