Cisco
Cisco IOS XE: vulnerabilidades y CVE
Cisco IOS XE tiene 581 vulnerabilidades publicadas, 24 de ellas en los últimos 12 meses. 20 son críticas y 28 figuran en el catálogo de explotación activa de CISA.
CVE581
Últimos 12 meses24
Críticas20
Explotadas activamente28
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-20352 | Alta (7.7) | 39% | ⚠ Explotación activa | 24 sept 2025 | A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow the following: An authenticated, remote attacker with low privileges could cause a… |
| CVE-2023-20273 | Alta (7.2) | 90% | ⚠ Explotación activa | 25 oct 2023 | A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to inject commands with the privileges of root. This vulnerability is due to insufficient input validation. An… |
| CVE-2023-20198 | Crítica (10) | 100% | ⚠ Explotación activa | 16 oct 2023 | Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS XE Software. We are updating the list of fixed releases and adding the Software Checker. Our… |
| CVE-2023-44487 | Alta (7.5) | 100% | ⚠ Explotación activa | 10 oct 2023 | The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023. |
| CVE-2023-20109 | Media (6.6) | 2.5% | ⚠ Explotación activa | 27 sept 2023 | A vulnerability in the Cisco Group Encrypted Transport VPN (GET VPN) feature of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker who has administrative control of either a group… |
| CVE-2016-6415 | Alta (7.5) | 88% | ⚠ Explotación activa | 19 sept 2016 | The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through 3.18S, IOS XR 4.3.x and 5.0.x through 5.2.x, and PIX before 7.0 allows remote attackers to obtain sensitive… |
| CVE-2017-6742 | Alta (8.8) | 21% | ⚠ Explotación activa | 17 jul 2017 | The vulnerability is due to a buffer overflow in the affected code area. The vulnerability affects all versions of SNMP (versions 1, 2c, and 3). The attacker must know the SNMP read only community string (SNMP version… |
| CVE-2017-3881 | Crítica (9.8) | 99% | ⚠ Explotación activa | 17 mar 2017 | A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device or remotely… |
| CVE-2017-6627 | Alta (7.5) | 6.2% | ⚠ Explotación activa | 7 sept 2017 | A vulnerability in the UDP processing code of Cisco IOS 15.1, 15.2, and 15.4 and IOS XE 3.14 through 3.18 could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP… |
| CVE-2017-12237 | Alta (7.5) | 7.1% | ⚠ Explotación activa | 29 sept 2017 | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS 15.0 through 15.6 and Cisco IOS XE 3.5 through 16.5 could allow an unauthenticated, remote attacker to cause high CPU utilization,… |
| CVE-2018-0172 | Alta (8.6) | 7.8% | ⚠ Explotación activa | 28 mar 2018 | A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a… |
| CVE-2018-0158 | Alta (8.6) | 7.2% | ⚠ Explotación activa | 28 mar 2018 | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a memory leak or a reload of an affected… |
| CVE-2017-12319 | Media (5.9) | 5.2% | ⚠ Explotación activa | 27 mar 2018 | A vulnerability in the Border Gateway Protocol (BGP) over an Ethernet Virtual Private Network (EVPN) for Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the device to reload, resulting in… |
| CVE-2018-0159 | Alta (7.5) | 6.9% | ⚠ Explotación activa | 28 mar 2018 | A vulnerability in the implementation of Internet Key Exchange Version 1 (IKEv1) functionality in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device… |
| CVE-2018-0167 | Alta (8.8) | 3.4% | ⚠ Explotación activa | 28 mar 2018 | Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to… |
| CVE-2018-0173 | Alta (8.6) | 7.6% | ⚠ Explotación activa | 28 mar 2018 | A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 information in DHCP Version 4 (DHCPv4) packets could allow an unauthenticated, remote attacker to cause… |
| CVE-2018-0151 | Crítica (9.8) | 14% | ⚠ Explotación activa | 28 mar 2018 | A vulnerability in the quality of service (QoS) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary… |
| CVE-2018-0155 | Alta (8.6) | 7.7% | ⚠ Explotación activa | 28 mar 2018 | A vulnerability in the Bidirectional Forwarding Detection (BFD) offload implementation of Cisco Catalyst 4500 Series Switches and Cisco Catalyst 4500-X Series Switches could allow an unauthenticated, remote attacker to… |
| CVE-2018-0174 | Alta (8.6) | 7.6% | ⚠ Explotación activa | 28 mar 2018 | A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a… |
| CVE-2018-0175 | Alta (8) | 3.5% | ⚠ Explotación activa | 28 mar 2018 | Format String vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a… |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-75943 | Baja (2.1) | 0.20% | — | 14 sept 2026 | A brief (milliseconds to seconds) traffic leak may occur when an authenticated supplicant is removed, either via the clear dot1x host all CLI command or due to a supplicant timeout. During this window, the supplicant's… |
| CVE-2026-20311 | Media (6.3) | 0.25% | — | 5 ago 2026 | A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote attacker with low privileges to cause a denial of service (DoS) condition on an affected device. This… |
| CVE-2026-20308 | Media (4.3) | 0.32% | — | 5 ago 2026 | A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote attacker with low privileges to perform a denial of service (DoS) attack against an affected device.… |
| CVE-2026-20301 | Alta (8.6) | 0.57% | — | 5 ago 2026 | A vulnerability in the Extensible Messaging Client Protocol (XMCP), also referred to as the External Client protocol, of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to… |
| CVE-2026-20273 | Alta (8.6) | 0.47% | — | 5 ago 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in a software… |
| CVE-2026-20272 | Crítica (9.8) | 0.57% | — | 5 ago 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software… |
| CVE-2026-20271 | Alta (8.6) | 0.47% | — | 5 ago 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software… |
| CVE-2026-20270 | Alta (8.6) | 0.47% | — | 5 ago 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software… |
| CVE-2026-20269 | Alta (8.6) | 0.47% | — | 5 ago 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software… |
| CVE-2026-20268 | Alta (8.6) | 0.47% | — | 5 ago 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software… |
| CVE-2026-20267 | Crítica (9) | 0.38% | — | 5 ago 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software… |
| CVE-2026-20263 | Alta (8.6) | 0.57% | — | 5 ago 2026 | A vulnerability in the Blocks Extensible Exchange Protocol (BEEP) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This… |
| CVE-2026-20124 | Alta (7.7) | 0.50% | — | 5 ago 2026 | A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authenticated, remote attacker to cause an affected device to reload, resulting in a denial of service… |
| CVE-2026-20125 | Alta (7.7) | 0.28% | — | 25 mar 2026 | A vulnerability in the HTTP Server feature of Cisco IOS Software and Cisco IOS XE Software Release 3E could allow an authenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a… |
| CVE-2026-20115 | Media (6.1) | 0.15% | — | 25 mar 2026 | A vulnerability in Cisco IOS XE Software for Cisco Meraki could allow a remote, unauthenticated attacker to view confidential device information. This vulnerability is due to a device configuration upload being… |
| CVE-2026-20114 | Media (5.4) | 0.28% | — | 25 mar 2026 | A vulnerability in the Lobby Ambassador web-based management API of Cisco IOS XE Software could allow an authenticated, remote attacker to elevate their privileges and access management APIs that would not normally be… |
| CVE-2026-20113 | Media (5.3) | 0.29% | — | 25 mar 2026 | A vulnerability in the web-based Cisco IOx application hosting environment management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to perform a carriage return line feed (CRLF)… |
| CVE-2026-20112 | Media (4.8) | 0.19% | — | 25 mar 2026 | A vulnerability in the web-based Cisco IOx application hosting environment management interface of Cisco IOS XE Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS)… |
| CVE-2026-20110 | Media (6.5) | 0.09% | — | 25 mar 2026 | A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability exists because incorrect privileges… |
| CVE-2026-20104 | Media (6.1) | 0.15% | — | 25 mar 2026 | A vulnerability in the bootloader of Cisco IOS XE Software for Cisco Catalyst 9200 Series Switches, Cisco Catalyst ESS9300 Embedded Series Switches, Cisco Catalyst IE9310 and IE9320 Rugged Series Switches, and Cisco… |
| CVE-2026-20084 | Alta (8.6) | 0.35% | — | 25 mar 2026 | A vulnerability in the DHCP snooping feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause BOOTP packets to be forwarded between VLANs, resulting in a denial of service (DoS)… |
| CVE-2026-20083 | Media (6.5) | 0.09% | — | 25 mar 2026 | A vulnerability in the Secure Copy Protocol (SCP) server feature of Cisco IOS XE Software could allow an authenticated, local attacker with low privileges to cause a denial of service (DoS) condition on an affected… |
| CVE-2026-20012 | Alta (8.6) | 0.35% | — | 25 mar 2026 | A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE Software, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, and Cisco Secure Firewall Threat… |
| CVE-2026-20004 | Alta (7.4) | 0.18% | — | 25 mar 2026 | A vulnerability in the TLS library of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to exhaust the available memory of an affected device. This vulnerability is due to improper management of… |
| CVE-2025-20363 | Crítica (9) | 6.9% | — | 25 sept 2025 | A vulnerability in the web services of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Cisco Secure Firewall Threat Defense (FTD) Software, Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR… |
| CVE-2025-20352 | Alta (7.7) | 39% | ⚠ Explotación activa | 24 sept 2025 | A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow the following: An authenticated, remote attacker with low privileges could cause a… |
| CVE-2025-20338 | Media (6.7) | 0.16% | — | 24 sept 2025 | A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with administrative privileges to execute arbitrary commands as root on the underlying operating system of an affected… |
| CVE-2025-20316 | Media (5.3) | 0.34% | — | 24 sept 2025 | A vulnerability in the access control list (ACL) programming of Cisco IOS XE Software for Cisco Catalyst 9500X and 9600X Series Switches could allow an unauthenticated, remote attacker to bypass a configured ACL on an… |
| CVE-2025-20315 | Alta (8.6) | 0.44% | — | 24 sept 2025 | A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, causing a denial of service… |
| CVE-2025-20314 | Media (6.7) | 0.16% | — | 24 sept 2025 | A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker with level-15 privileges or an unauthenticated attacker with physical access to an affected device to execute persistent code at boot… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
📰 Noticias relacionadas
Otros productos de Cisco
IOS · 625Adaptive Security Appliance Software · 354Secure Firewall Threat Defense · 299Nx-os · 286Unified Communications Manager · 241IOS XR · 213Identity Services Engine · 206Secure Firewall Management Center · 191Webex Meetings Server · 136Rv110w Firmware · 132Rv130w Firmware · 131Unified Computing System · 116