target entity

IOS and IOS XE Software

14 source-linked records in the current knowledge graph.

high

CVE-2017-6742: Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. Required action: Apply updates per vendor instructions.

CVE-2017-6742EPSS 21.4%CiscoIOS and IOS XE Software
CISA KEV ↗ · unattributed attribution
high

CVE-2018-0151: Cisco IOS Software and Cisco IOS XE Software Quality of Service Remote Code Execution Vulnerability

A vulnerability in the quality of service (QoS) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges. Required action: Apply updates per vendor instructions.

CVE-2018-0151EPSS 14.5%CiscoIOS and IOS XE Software
CISA KEV ↗ · unattributed attribution
high

CVE-2017-6740: Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. Required action: Apply updates per vendor instructions.

CVE-2017-6740EPSS 10.8%CiscoIOS and IOS XE Software
CISA KEV ↗ · unattributed attribution
high

CVE-2017-6739: Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. Required action: Apply updates per vendor instructions.

CVE-2017-6739EPSS 10.5%CiscoIOS and IOS XE Software
CISA KEV ↗ · unattributed attribution
high

CVE-2017-6663: Cisco IOS Software and Cisco IOS XE Software Denial-of-Service Vulnerability

A vulnerability in the Autonomic Networking feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause autonomic nodes of an affected system to reload, resulting in denial-of-service (DoS). Required action: Apply updates per vendor instructions.

CVE-2017-6663EPSS 2.1%CiscoIOS and IOS XE Software
CISA KEV ↗ · unattributed attribution
high

CVE-2017-6627: Cisco IOS Software and Cisco IOS XE Software UDP Packet Processing Denial-of-Service Vulnerability

A vulnerability in the UDP processing code of Cisco IOS and IOS XE could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP packets, causing an interface queue wedge and denial of service. Required action: Apply updates per vendor instructions.

CVE-2017-6627EPSS 6.0%CiscoIOS and IOS XE Software
CISA KEV ↗ · unattributed attribution
high

CVE-2017-12240: Cisco IOS and IOS XE Software DHCP Remote Code Execution Vulnerability

The Dynamic Host Configuration Protocol (DHCP) relay subsystem of Cisco IOS and Cisco IOS XE Software contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code and gain full control of an affected system. Required action: Apply updates per vendor instructions.

CVE-2017-12240EPSS 13.9%CiscoIOS and IOS XE Software
CISA KEV ↗ · unattributed attribution
high

CVE-2017-12237: Cisco IOS and IOS XE Software Internet Key Exchange Denial-of-Service Vulnerability

A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS and Cisco IOS XE could allow an unauthenticated, remote attacker to cause high CPU utilization, traceback messages, or a reload of an affected device that leads to a denial of service. Required action: Apply updates per vendor instructions.

CVE-2017-12237EPSS 7.1%CiscoIOS and IOS XE Software
CISA KEV ↗ · unattributed attribution