Vulnerabilities > Cisco > IOS XR > 6.4.2

DATE CVE VULNERABILITY TITLE RISK
2019-04-17 CVE-2019-1711 Improper Input Validation vulnerability in Cisco IOS XR
A vulnerability in the Event Management Service daemon (emsd) of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-20
5.0
2019-04-17 CVE-2019-1686 Unspecified vulnerability in Cisco IOS XR
A vulnerability in the TCP flags inspection feature for access control lists (ACLs) on Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, remote attacker to bypass protection offered by a configured ACL on an affected device.
network
low complexity
cisco
5.0
2019-02-21 CVE-2019-1681 Path Traversal vulnerability in Cisco IOS XR
A vulnerability in the TFTP service of Cisco Network Convergence System 1000 Series software could allow an unauthenticated, remote attacker to retrieve arbitrary files from the targeted device, possibly resulting in information disclosure.
network
low complexity
cisco CWE-22
7.5