Known vulnerabilities in Cisco IOS XE - page 6

Software: Cisco IOS XE
Software CPE: cpe:2.3:o:cisco_systems:cisco_ios_xe:*:*:*:*:*:*:*:*
Total vulnerabilities: 312
Public exploits: 7
Known exploited (KEV): 34
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Cisco IOS XE Cisco IOS XE is affected by 312 known vulnerabilities: 4 critical, 53 high, 121 medium, 134 low Critical High Medium Low

Vulnerabilities (312)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU73980 - Improper input validation
CVE-2023-20081
CWE-20 Medium
No
No
- 23.03.2023 SB2023032325
#VU73973 - Command injection
CVE-2023-20097
CWE-77 Low
No
No
16.12.8, 17.3.6, 17.6.5, 17.9.2 23.03.2023 SB2023032317
#VU67737 - Uncaught Exception
CVE-2022-20919
CWE-248 High
No
No
Amsterdam-17.3.6, Bengaluru-17.6.4, Gibraltar-16.12.8, Cupertino-17.9.1, Cupertino-17.9.1a, 15.2(08)E02, 16.12.8, 17.3(5.83), 17.3.6, 17.6.1z, 17.6(3.17), 17.6.4, 17.9(0.6), 17.9.1a 29.09.2022 SB2022092919
#VU67736 - Improper Check for Unusual or Exceptional Conditions
CVE-2022-20837
CWE-754 High
No
No
16.12.8, 17.3.6, 17.6.1z, 17.6.4, 17.9.1, 17.9.1a 29.09.2022 SB2022092918
#VU67735 - Improper Handling of Length Parameter Inconsistency
CVE-2022-20870
CWE-130 High
No
No
16.12.6, 16.12.7, 16.12.8, 17.3.5, 17.3.5b, 17.3.6, 17.6.1z, 17.6.2, 17.6.3, 17.6.3a, 17.6.4, 17.7.1, 17.7.1a, 17.7.2, 17.8.1, 17.8.1a, 17.9.1, 17.9.1a 29.09.2022 SB2022092917
#VU67734 - Improper control of a resource through its lifetime
CVE-2022-20856
CWE-664 High
No
No
16.12.8, 17.3.5b, 17.3.6, 17.6.3, 17.6.3a, 17.6.4, 17.8.1, 17.8.1a, 17.9.1, 17.9.1a 29.09.2022 SB2022092916
#VU67729 - Incorrect Privilege Assignment
CVE-2022-20855
CWE-266 Low
No
No
16.12.7, 16.12.8, 17.3.1z, 17.3.3, 17.3.3a, 17.3.4, 17.3.4 b, 17.3.5, 17.3.5a, 17.3.5b, 17.3.6, 17.4.1, 17.4.1c, 17.4.2, 17.5.1, 17.5.1a, 17.6.1, 17.6.1w, 17.6.1z, 17.6.2, 17.6.3, 17.6.3a, 17.6.4, 17.7.1, 17.7.1b, 17.7.2, 17.8.1, 17.8.1a, 17.9.1, 17.9.1a 29.09.2022 SB2022092915
#VU67728 - Improper Handling of Exceptional Conditions
CVE-2022-20920
CWE-755 Medium
No
No
Amsterdam-17.3.6, ap-17.3.6.7, ap-17.3.6.76, ap-17.6.3.27, ap-17.6.3.33, ap-17.8.0.121, ap-17.8.0.144, ap-17.9.0.56, ap-17.9.1.8, Bengaluru-17.6.1, Bengaluru-17.6.3, Gibraltar-16.12.6, Cupertino-17.8.1, Cupertino-17.9.1, 008.010(178.017), 15.3(03)JPM, 15.5(01)SY10, 15.8(03)M09, 15.9(03)M06, 16.12(5.73), 16.12.6, 16.12.6a, 16.12.7, 16.12.8, 17.3.5b, 17.3(5.89), 17.3.6, 17.6(0.83), 17.6.1, 17.6.1w, 17.6.1x, 17.6.1y, 17.6.1z, 17.6.1a, 17.6.2, 17.6.3, 17.6.3a, 17.6.4, 17.7.1, 17.7.1a, 17.7.2, 17.8.1, 17.8.1a, 17.9.1, 17.9.1a 29.09.2022 SB2022092914
#VU67727 - Improper input validation
CVE-2022-20915
CWE-20 Low
No
No
16.12.8, 17.3.6, 17.6.1z, 17.6.3, 17.6.3a, 17.6.4, 17.7.2, 17.8.1, 17.8.1a, 17.9.1, 17.9.1a 29.09.2022 SB2022092913
#VU67726 - Improper Verification of Cryptographic Signature
CVE-2022-20944
CWE-347 Low
No
No
16.9.8, 16.12.6, 16.12.7, 16.12.8, 17.3.4a, 17.3.4 b, 17.3.5b, 17.3.6, 17.6.1y, 17.6.1a, 17.6.3a, 17.6.4, 17.7.1a, 17.9.1, 17.9.1a 29.09.2022 SB2022092912
#VU67725 - Exposure of sensitive information to an unauthorized actor
CVE-2022-20810
CWE-200 Medium
No
No
- 29.09.2022 SB2022092911
#VU67724 - Command injection
CVE-2022-20851
CWE-77 Low
No
No
Amsterdam-17.3.5, Bengaluru-17.6.3, Gibraltar-16.12.7, Cupertino-17.7.1, Cupertino-17.7.1a, Cupertino-17.8.1, Cupertino-17.8.1a, 16.12(6.30), 16.12.7, 16.12.8, 17.3(4.64), 17.3.5, 17.3.5a, 17.3.5b, 17.3.6, 17.6(2.11), 17.6.3, 17.6.3a, 17.6.4, 17.7(0.117), 17.7.1, 17.7.1a, 17.8(0.15), 17.8.1, 17.8.1a, 17.9.1, 17.9.1a 29.09.2022 SB2022092910
#VU67722 - Resource Management Errors
CVE-2022-20847
CWE-399 Medium
No
No
16.12.7, 17.3.5a, 17.6.3, 17.7.1 28.09.2022 SB2022092838
#VU62352 - Insufficient Control Flow Management
CVE-2022-20697
CWE-691 High
No
No
15.2(07)E05, 15.2(08)E01, 15.9(03.00a)M04, 15.9(03)M04a 15.04.2022 SB2022041511
#VU62339 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2022-20693
CWE-74 Low
No
No
Amsterdam-17.3.5, Gibraltar-16.12.7, Cupertino-17.7.1, Cupertino-17.7.1a, 16.12(6.37), 16.12.7, 17.3(4.11), 17.3.5, 17.6(1.7), 17.6.2, 17.6.3, 17.7(0.75), 17.7.1, 17.7.1a 14.04.2022 SB2022041419
#VU62338 - Improper input validation
CVE-2022-20679
CWE-20 Medium
No
No
- 14.04.2022 SB2022041418
#VU62337 - Resource exhaustion
CVE-2022-20692
CWE-400 Medium
No
No
Gibraltar-16.12.7, 16.12(5.80), 16.12.7 14.04.2022 SB2022041417
#VU62328 - Execution with Unnecessary Privileges
CVE-2022-20719
CWE-250 Low
No
No
16.12(6), 17.3(5), 17.6(2), 17.7(1) 14.04.2022 SB2022041415
#VU62327 - Command injection
CVE-2022-20718
CWE-77 Low
No
No
16.12(6), 17.3(5), 17.6(2), 17.7(1) 14.04.2022 SB2022041415
#VU62326 - Execution with Unnecessary Privileges
CVE-2022-20677
CWE-250 Low
No
No
16.12(7), 17.3(5), 17.6(2), 17.7(1) 14.04.2022 SB2022041416


Showing elements 101 - 120 out of 312