Vulnerabilities > Cisco > IOS XR > High

DATE CVE VULNERABILITY TITLE RISK
2017-10-05 CVE-2017-12270 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco IOS XR
A vulnerability in the gRPC code of Cisco IOS XR Software for Cisco Network Convergence System (NCS) 5500 Series Routers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition when the emsd service stops.
network
low complexity
cisco CWE-119
7.5
2017-07-10 CVE-2017-6731 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco IOS XR 4.3.2.Mcast/6.0.2.Base
A vulnerability in Multicast Source Discovery Protocol (MSDP) ingress packet processing for Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause the MSDP session to be unexpectedly reset, causing a short denial of service (DoS) condition.
network
low complexity
cisco CWE-119
7.5
2017-07-10 CVE-2017-6728 Improper Privilege Management vulnerability in Cisco IOS XR
A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to execute arbitrary code at the root privilege level on an affected system, because of Incorrect Permissions.
local
high complexity
cisco CWE-269
7.0
2017-05-16 CVE-2017-3876 Unspecified vulnerability in Cisco IOS XR 6.1.0/6.1.1
A vulnerability in the Event Management Service daemon (emsd) of Cisco IOS XR routers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the affected device.
network
low complexity
cisco
7.5
2016-12-14 CVE-2016-9215 Permissions, Privileges, and Access Controls vulnerability in Cisco IOS XR 6.1.1
A vulnerability in Cisco IOS XR Software could allow an authenticated, local attacker to log in to the device with the privileges of the root user.
local
low complexity
cisco CWE-264
7.8
2016-12-14 CVE-2016-9205 Resource Management Errors vulnerability in Cisco IOS XR 6.1.1
A vulnerability in the HTTP 2.0 request handling code of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause the Event Management Service daemon (emsd) to crash, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-399
7.5
2016-10-06 CVE-2016-6428 Permissions, Privileges, and Access Controls vulnerability in Cisco IOS XR 6.1.1
Cisco IOS XR 6.1.1 allows local users to execute arbitrary OS commands as root by leveraging admin privileges, aka Bug ID CSCva38349.
local
low complexity
cisco CWE-264
7.8
2016-09-19 CVE-2016-6415 Information Exposure vulnerability in Cisco IOS
The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through 3.18S, IOS XR 4.3.x and 5.0.x through 5.2.x, and PIX before 7.0 allows remote attackers to obtain sensitive information from device memory via a Security Association (SA) negotiation request, aka Bug IDs CSCvb29204 and CSCvb36055 or BENIGNCERTAIN.
network
low complexity
cisco CWE-200
7.5
2016-08-23 CVE-2016-6355 Resource Management Errors vulnerability in Cisco IOS XR
Memory leak in Cisco IOS XR 5.1.x through 5.1.3, 5.2.x through 5.2.5, and 5.3.x through 5.3.2 on ASR 9001 devices allows remote attackers to cause a denial of service (control-plane protocol outage) via crafted fragmented packets, aka Bug ID CSCux26791.
network
low complexity
cisco CWE-399
7.5
2016-07-15 CVE-2016-1456 Permissions, Privileges, and Access Controls vulnerability in Cisco IOS XR 6.0.0/6.0.1/6.0Base
The CLI in Cisco IOS XR 6.x through 6.0.1 allows local users to execute arbitrary OS commands in a privileged context by leveraging unspecified container access, aka Bug ID CSCuz62721.
local
low complexity
cisco CWE-264
7.8