The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. Required action: Apply updates per vendor instructions.
CVE-2017-6742EPSS 21.4%CiscoIOS and IOS XE Software
A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 information in DHCP Version 4 (DHCPv4) packets can allow for denial-of-service (DoS). Required action: Apply updates per vendor instructions.
CVE-2018-0173EPSS 7.8%CiscoIOS and IOS XE Software
A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow for denial-of-service (DoS). Required action: Apply updates per vendor instructions.
CVE-2018-0172EPSS 8.0%CiscoIOS and IOS XE Software
A vulnerability in the quality of service (QoS) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges. Required action: Apply updates per vendor instructions.
CVE-2018-0151EPSS 14.5%CiscoIOS and IOS XE Software
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code. Required action: Apply updates per vendor instructions.
CVE-2017-6743EPSS 10.5%CiscoIOS and IOS XE Software
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. Required action: Apply updates per vendor instructions.
CVE-2017-6740EPSS 10.8%CiscoIOS and IOS XE Software
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. Required action: Apply updates per vendor instructions.
CVE-2017-6739EPSS 10.5%CiscoIOS and IOS XE Software
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code. Required action: Apply updates per vendor instructions.
CVE-2017-6738EPSS 10.5%CiscoIOS and IOS XE Software
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code. Required action: Apply updates per vendor instructions.
CVE-2017-6737EPSS 42.6%CiscoIOS and IOS XE Software
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code. Required action: Apply updates per vendor instructions.
CVE-2017-6736EPSS 70.6%CiscoIOS and IOS XE Software
A vulnerability in the Autonomic Networking feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause autonomic nodes of an affected system to reload, resulting in denial-of-service (DoS). Required action: Apply updates per vendor instructions.
CVE-2017-6663EPSS 2.1%CiscoIOS and IOS XE Software
A vulnerability in the UDP processing code of Cisco IOS and IOS XE could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP packets, causing an interface queue wedge and denial of service. Required action: Apply updates per vendor instructions.
CVE-2017-6627EPSS 6.0%CiscoIOS and IOS XE Software
The Dynamic Host Configuration Protocol (DHCP) relay subsystem of Cisco IOS and Cisco IOS XE Software contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code and gain full control of an affected system. Required action: Apply updates per vendor instructions.
CVE-2017-12240EPSS 13.9%CiscoIOS and IOS XE Software
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS and Cisco IOS XE could allow an unauthenticated, remote attacker to cause high CPU utilization, traceback messages, or a reload of an affected device that leads to a denial of service. Required action: Apply updates per vendor instructions.
CVE-2017-12237EPSS 7.1%CiscoIOS and IOS XE Software