Cisco Vulnerabilities and Affected Products
Vulnerabilities associated with IOS and IOS XE.
Products
Clear product- Cisco Small Business RV Series Router Firmware262 vulnerabilities
- Cisco IOS XE Software248 vulnerabilities
- Cisco Firepower Threat Defense Software161 vulnerabilities
- Cisco Adaptive Security Appliance (ASA) Software160 vulnerabilities
- Cisco Identity Services Engine Software156 vulnerabilities
- Cisco Firepower Management Center128 vulnerabilities
- Cisco IOS XR Software107 vulnerabilities
- Cisco NX-OS Software88 vulnerabilities
- Cisco Data Center Network Manager74 vulnerabilities
- Cisco SD-WAN vManage61 vulnerabilities
- Cisco SD-WAN Solution54 vulnerabilities
- Cisco Unified Communications Manager52 vulnerabilities
- Cisco Prime Infrastructure50 vulnerabilities
- Cisco Secure Firewall Threat Defense (FTD) Software48 vulnerabilities
- Cisco Webex Meetings46 vulnerabilities
- Cisco Catalyst SD-WAN Manager45 vulnerabilities
- IOS41 vulnerabilities
- Cisco Enterprise NFV Infrastructure Software39 vulnerabilities
- Cisco IOS36 vulnerabilities
- Cisco Unified Contact Center Express36 vulnerabilities
- Cisco WebEx WRF Player35 vulnerabilities
- Cisco Digital Network Architecture Center (DNA Center)33 vulnerabilities
- Cisco Unified Computing System (Managed)33 vulnerabilities
- Cisco Secure Firewall Adaptive Security Appliance (ASA) Software31 vulnerabilities
- Cisco Unity Connection31 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2025-20352HIGH | Cisco IOS and IOS XE Software SNMP Denial of Service and Remote Code Execution VulnerabilityA vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow the following: An authenticated, remote attacker with low privileges could cause a denial of service (DoS) condition on an affected device that is running Cisco IOS Software or Cisco IOS XE Software. To cause the DoS, the attacker must have the SNMPv2c or earlier read-only community string or valid SNMPv3 user credentials. An authenticated, remote attacker… CWE-121Sep 24, 2025 | CVSS7.7v3.1 | EPSS38.8% | PoCs2 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-20109MEDIUM | Cisco IOS and IOS XE Group Encrypted Transport VPN Out-of-Bounds Write VulnerabilityA vulnerability in the Cisco Group Encrypted Transport VPN (GET VPN) feature of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker who has administrative control of either a group member or a key server to execute arbitrary code on an affected device or cause the device to crash. This vulnerability is due to insufficient validation of attributes in the Group Domain of Interpretation (GDOI) and G-IKEv2 protocols of the GET VPN feature. An attacker could … CWE-787Sep 27, 2023 | CVSS6.6v3.1 | EPSS2.34% | PoCs0 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2018-0171CRITICAL | Cisco IOS and IOS XE Software Smart Install Remote Code Execution VulnerabilityA vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition, or to execute arbitrary code on an affected device. The vulnerability is due to improper validation of packet data. An attacker could exploit this vulnerability by sending a crafted Smart Install message to an affected device on TCP port 4786. A successful exploit c… | CVSS9.8v3.1 | EPSS99.5% | PoCs2 | SignalsListed in CISA KEVNo known ransomware use1 Nuclei template | STIX |
CVE-2017-3881CRITICAL | Cisco IOS and IOS XE Remote Code Execution VulnerabilityA vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device or remotely execute code with elevated privileges. The Cluster Management Protocol utilizes Telnet internally as a signaling and command protocol between cluster members. The vulnerability is due to the combination of two factors: (1) the failure to restrict the use of CMP-specific Telnet opti… | CVSS9.8v3.1 | EPSS99% | PoCs8 | SignalsListed in CISA KEVNo known ransomware use1 Nuclei template | STIX |