Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ios xe vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2020-3400
A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote malicious user to utilize parts of the web UI for which they are not authorized.The vulnerability is due to insufficient authorization of web UI access requests. An attacker could ...
Cisco Ios Xe 16.2.2
Cisco Ios Xe 16.3.1
Cisco Ios Xe 16.3.1a
Cisco Ios Xe 16.3.2
Cisco Ios Xe 16.3.3
Cisco Ios Xe 16.3.4
Cisco Ios Xe 16.3.5
Cisco Ios Xe 16.3.5b
Cisco Ios Xe 16.3.6
Cisco Ios Xe 16.3.7
Cisco Ios Xe 16.3.8
Cisco Ios Xe 16.3.9
Cisco Ios Xe 16.3.10
Cisco Ios Xe 16.3.11
Cisco Ios Xe 17.2.1t
8.8
CVSSv3
CVE-2020-3425
Multiple vulnerabilities in the web management framework of Cisco IOS XE Software could allow an authenticated, remote attacker with read-only privileges to elevate privileges to the level of an Administrator user on an affected device. For more information about these vulnerabil...
Cisco Ios Xe 16.1.1
Cisco Ios Xe 16.1.2
Cisco Ios Xe 16.1.3
Cisco Ios Xe 16.2.1
Cisco Ios Xe 16.2.2
Cisco Ios Xe 16.3.1
Cisco Ios Xe 16.3.1a
Cisco Ios Xe 16.3.2
Cisco Ios Xe 16.3.3
Cisco Ios Xe 16.3.4
Cisco Ios Xe 16.3.5
Cisco Ios Xe 16.3.5b
Cisco Ios Xe 16.3.6
Cisco Ios Xe 16.3.7
Cisco Ios Xe 16.3.8
Cisco Ios Xe 16.3.9
Cisco Ios Xe 16.3.10
Cisco Ios Xe 16.4.1
Cisco Ios Xe 16.4.2
Cisco Ios Xe 16.4.3
Cisco Ios Xe 16.5.1
Cisco Ios Xe 16.5.1a
8.8
CVSSv3
CVE-2019-16009
A vulnerability in the web UI of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote malicious user to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web UI on an a...
Cisco Ios
Cisco Ios Xe
1 Article
8.8
CVSSv3
CVE-2020-3199
Multiple vulnerabilities in the Cisco IOx application environment of Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) that are running Cisco IOS Software could allow an malicious user to cause a deni...
Cisco Ios 12.2\\(60\\)ez16
Cisco Ios 15.0\\(2\\)sg11a
Cisco Ios 15.3\\(3\\)jaa1
Cisco Ios 15.3\\(3\\)jpj
Cisco Ios 15.4\\(1\\)cg
Cisco Ios 15.4\\(2\\)cg
Cisco Ios 15.4\\(3\\)m
Cisco Ios 15.4\\(3\\)m1
Cisco Ios 15.4\\(3\\)m2
Cisco Ios 15.4\\(3\\)m3
Cisco Ios 15.4\\(3\\)m4
Cisco Ios 15.4\\(3\\)m5
Cisco Ios 15.4\\(3\\)m6
Cisco Ios 15.4\\(3\\)m6a
Cisco Ios 15.4\\(3\\)m7
Cisco Ios 15.4\\(3\\)m8
Cisco Ios 15.4\\(3\\)m9
Cisco Ios 15.4\\(3\\)m10
Cisco Ios 15.5\\(1\\)t
Cisco Ios 15.5\\(1\\)t2
Cisco Ios 15.5\\(1\\)t3
Cisco Ios 15.5\\(1\\)t4
8.8
CVSSv3
CVE-2020-3205
A vulnerability in the implementation of the inter-VM channel of Cisco IOS Software for Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) could allow an unauthenticated, adjacent malicious user to exe...
Cisco Ios 12.2\\(60\\)ez16
Cisco Ios 15.0\\(2\\)sg11a
Cisco Ios 15.2\\(4\\)jaz1
Cisco Ios 15.3\\(3\\)jaa1
Cisco Ios 15.3\\(3\\)jpi
Cisco Ios 15.3\\(3\\)jpj
Cisco Ios 15.4\\(1\\)cg
Cisco Ios 15.4\\(2\\)cg
Cisco Ios 15.4\\(3\\)m
Cisco Ios 15.4\\(3\\)m1
Cisco Ios 15.4\\(3\\)m2
Cisco Ios 15.4\\(3\\)m3
Cisco Ios 15.4\\(3\\)m4
Cisco Ios 15.4\\(3\\)m5
Cisco Ios 15.4\\(3\\)m6
Cisco Ios 15.4\\(3\\)m6a
Cisco Ios 15.4\\(3\\)m7
Cisco Ios 15.4\\(3\\)m8
Cisco Ios 15.4\\(3\\)m9
Cisco Ios 15.4\\(3\\)m10
Cisco Ios 15.5\\(1\\)t
Cisco Ios 15.5\\(1\\)t2
8.8
CVSSv3
CVE-2020-3224
A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker with read-only privileges to inject IOS commands to an affected device. The injected commands should require a higher privilege level in order to be exe...
Cisco Ios Xe 16.11.1
Cisco Ios Xe 16.11.1a
Cisco Ios Xe 16.11.1b
Cisco Ios Xe 16.11.1c
Cisco Ios Xe 16.11.1s
Cisco Ios Xe 16.12.1y
8.8
CVSSv3
CVE-2020-3229
A vulnerability in Role Based Access Control (RBAC) functionality of Cisco IOS XE Web Management Software could allow a Read-Only authenticated, remote malicious user to execute commands or configuration changes as an Admin user. The vulnerability is due to incorrect handling of ...
Cisco Ios Xe 16.2.2
Cisco Ios Xe 16.3.1
Cisco Ios Xe 16.3.1a
Cisco Ios Xe 16.3.2
Cisco Ios Xe 16.3.3
Cisco Ios Xe 16.3.4
Cisco Ios Xe 16.3.5
Cisco Ios Xe 16.3.5b
Cisco Ios Xe 16.3.6
Cisco Ios Xe 16.3.7
Cisco Ios Xe 16.3.8
Cisco Ios Xe 16.3.9
Cisco Ios Xe 16.3.10
Cisco Ios Xe 16.4.1
Cisco Ios Xe 16.4.2
Cisco Ios Xe 16.4.3
Cisco Ios Xe 16.5.1
Cisco Ios Xe 16.5.1a
Cisco Ios Xe 16.5.1b
Cisco Ios Xe 16.5.2
Cisco Ios Xe 16.5.3
Cisco Ios Xe 16.6.1
8.8
CVSSv3
CVE-2020-3217
A vulnerability in the Topology Discovery Service of Cisco One Platform Kit (onePK) in Cisco IOS Software, Cisco IOS XE Software, Cisco IOS XR Software, and Cisco NX-OS Software could allow an unauthenticated, adjacent malicious user to execute arbitrary code or cause a denial of...
Cisco Ios 12.2\\(6\\)i1
Cisco Ios 12.4\\(25e\\)jao7
Cisco Ios 15.0\\(2\\)sg11a
Cisco Ios 15.1\\(3\\)svr1
Cisco Ios 15.2\\(1\\)sy
Cisco Ios 15.2\\(1\\)sy0a
Cisco Ios 15.2\\(1\\)sy1
Cisco Ios 15.2\\(1\\)sy1a
Cisco Ios 15.2\\(1\\)sy2
Cisco Ios 15.2\\(1\\)sy3
Cisco Ios 15.2\\(1\\)sy4
Cisco Ios 15.2\\(1\\)sy5
Cisco Ios 15.2\\(1\\)sy6
Cisco Ios 15.2\\(1\\)sy7
Cisco Ios 15.2\\(1\\)sy8
Cisco Ios 15.2\\(2\\)sy
Cisco Ios 15.2\\(2\\)sy1
Cisco Ios 15.2\\(2\\)sy2
Cisco Ios 15.2\\(2\\)sy3
Cisco Ios 15.2\\(3\\)e
Cisco Ios 15.2\\(3\\)e1
Cisco Ios 15.2\\(3\\)e2
8.8
CVSSv3
CVE-2020-3219
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote malicious user to inject and execute arbitrary commands with administrative privileges on the underlying operating system of an affected device. The vulnerability is due to insufficient va...
Cisco Ios Xe 16.1.1
Cisco Ios Xe 16.1.2
Cisco Ios Xe 16.1.3
Cisco Ios Xe 16.2.1
Cisco Ios Xe 16.2.2
Cisco Ios Xe 16.3.1
Cisco Ios Xe 16.3.1a
Cisco Ios Xe 16.3.2
Cisco Ios Xe 16.3.3
Cisco Ios Xe 16.3.4
Cisco Ios Xe 16.3.5
Cisco Ios Xe 16.3.5b
Cisco Ios Xe 16.3.6
Cisco Ios Xe 16.3.7
Cisco Ios Xe 16.3.8
Cisco Ios Xe 16.3.9
Cisco Ios Xe 16.3.10
Cisco Ios Xe 16.4.1
Cisco Ios Xe 16.4.2
Cisco Ios Xe 16.4.3
Cisco Ios Xe 16.5.1
Cisco Ios Xe 16.5.1a
8.8
CVSSv3
CVE-2020-3234
A vulnerability in the virtual console authentication of Cisco IOS Software for Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) could allow an authenticated but low-privileged, local malicious user ...
Cisco Ios 12.2\\(60\\)ez16
Cisco Ios 15.0\\(2\\)sg11a
Cisco Ios 15.3\\(3\\)jaa1
Cisco Ios 15.3\\(3\\)jpj
Cisco Ios 15.4\\(1\\)cg
Cisco Ios 15.4\\(2\\)cg
Cisco Ios 15.4\\(3\\)m
Cisco Ios 15.4\\(3\\)m1
Cisco Ios 15.4\\(3\\)m2
Cisco Ios 15.4\\(3\\)m3
Cisco Ios 15.4\\(3\\)m4
Cisco Ios 15.4\\(3\\)m5
Cisco Ios 15.4\\(3\\)m6
Cisco Ios 15.4\\(3\\)m6a
Cisco Ios 15.4\\(3\\)m7
Cisco Ios 15.4\\(3\\)m8
Cisco Ios 15.4\\(3\\)m9
Cisco Ios 15.4\\(3\\)m10
Cisco Ios 15.5\\(1\\)t
Cisco Ios 15.5\\(1\\)t2
Cisco Ios 15.5\\(1\\)t3
Cisco Ios 15.5\\(1\\)t4
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
path traversal
CVE-2024-26978
CVE-2024-26982
wireless
CVE-2023-6949
CVE-2024-26980
CVE-2024-32766
CVE-2024-26939
cache poisoning
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »