Vulnerabilities (CVE)

Vendor filter

Cisco Subscribe

Product filter

Ios Subscribe

Filter

546 total CVE
CVE Vendors Products Updated CVSS
CVE-2019-1762 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the Secure Storage feature of Cisco IOS and IOS XE Software could allow an authenticated, local attacker to access sensitive system information on an affected device. The vulnerability is due to improper memory operations...
CVE-2019-1761 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the Hot Standby Router Protocol (HSRP) subsystem of Cisco IOS and IOS XE Software could allow an unauthenticated, adjacent attacker to receive potentially sensitive information from an affected device. The vulnerability is due...
CVE-2019-1758 1 Cisco 1 Ios 2019-10-09 N/A
A vulnerability in 802.1x function of Cisco IOS Software on the Catalyst 6500 Series Switches could allow an unauthenticated, adjacent attacker to access the network prior to authentication. The vulnerability is due to how the 802.1x packets are...
CVE-2019-1757 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the Cisco Smart Call Home feature of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to gain unauthorized read access to sensitive data using an invalid certificate. The vulnerability is due to...
CVE-2019-1756 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in Cisco IOS XE Software could allow an authenticated, remote attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vulnerability occurs because the affected software improperly...
CVE-2019-1752 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the ISDN functions of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the device to reload. The vulnerability is due to incorrect processing of specific values in the Q.931...
CVE-2019-1751 1 Cisco 1 Ios 2019-10-09 N/A
A vulnerability in the Network Address Translation 64 (NAT64) functions of Cisco IOS Software could allow an unauthenticated, remote attacker to cause either an interface queue wedge or a device reload. The vulnerability is due to the incorrect...
CVE-2019-1748 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the Cisco Network Plug-and-Play (PnP) agent of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to gain unauthorized access to sensitive data. The vulnerability exists because the...
CVE-2019-1747 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the implementation of the Short Message Service (SMS) handling functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition on an...
CVE-2019-1746 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the Cluster Management Protocol (CMP) processing code in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The...
CVE-2019-1740 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability are due to a...
CVE-2019-1739 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability is due to a...
CVE-2019-1738 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability is due to a...
CVE-2019-1737 1 Cisco 2 Ios, Ios Xe 2019-10-09 N/A
A vulnerability in the processing of IP Service Level Agreement (SLA) packets by Cisco IOS Software and Cisco IOS XE software could allow an unauthenticated, remote attacker to cause an interface wedge and an eventual denial of service (DoS)...
CVE-2019-1649 1 Cisco 14 Enterprise Network Compute System, Analog Voice Network Interface Modules Firmware, Asr 1000 Series Firmware and 11 more 2019-10-09 7.2
A vulnerability in the logic that handles access control to one of the hardware components in Cisco's proprietary Secure Boot implementation could allow an authenticated, local attacker to write a modified firmware image to the component. This...
CVE-2019-12672 1 Cisco 1 Ios 2019-10-09 7.2
A vulnerability in the filesystem of Cisco IOS XE Software could allow an authenticated, local attacker with physical access to an affected device to execute arbitrary code on the underlying operating system (OS) with root privileges. The...
CVE-2019-12670 1 Cisco 1 Ios 2019-10-09 4.6
A vulnerability in the filesystem of Cisco IOS XE Software could allow an authenticated, local attacker within the IOx Guest Shell to modify the namespace container protections on an affected device. The vulnerability is due to insufficient file...
CVE-2019-12669 1 Cisco 1 Ios 2019-10-09 7.8
A vulnerability in the RADIUS Change of Authorization (CoA) code of Cisco TrustSec, a feature within Cisco IOS XE Software, could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The...
CVE-2019-12668 1 Cisco 2 Ios, Ios Xe 2019-10-09 3.5
A vulnerability in the web framework code of Cisco IOS and Cisco IOS XE Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of the affected software...
CVE-2019-12665 1 Cisco 1 Ios 2019-10-09 5.8
A vulnerability in the HTTP client feature of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to read and modify data that should normally have been sent via an encrypted channel. The vulnerability is due to TCP port...