Ios Xe

Vendor:

First CVE: Jul 30, 2009 · Active for 16 years

541
Total CVEs
More Total CVEs than 100% of tracked products
31.8
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
7.3
Avg CVSS
Higher Avg CVSS than 45% of tracked products
5.2%
KEV Rate
Higher KEV Rate than 97% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Ios Xe over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jul 30, 2009
16 years ago
Most Recent CVE
Sep 25, 2025
305 days ago

CVE Severity & Scoring

Ios Xe541 CVEs
All CVEs352,727 CVEs
LowMediumHighCritical
Attack Vector
Local76 (14.0%)
Network282 (52.1%)
Unknown116 (21.4%)
Physical9 (1.7%)
Adjacent Network58 (10.7%)
Attack Complexity
Low393 (72.6%)
High32 (5.9%)
Unknown116 (21.4%)
User Interaction
None404 (74.7%)
Unknown116 (21.4%)
Required21 (3.9%)
Privileges Required
Low88 (16.3%)
High81 (15.0%)
None256 (47.3%)
Unknown116 (21.4%)

Top CVEs

Signals from CVEs in this product scope (541 CVEs).

541 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS XE Software. We are updating the list of fixed releases and
Oct 16, 202310.099YESYES
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a rel
Mar 17, 20179.899YESYES
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through
Oct 10, 20237.597YESYES
The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through 3.18S, IOS XR 4.3.x and 5.0.x through 5.2.x, and PIX before 7.0 allows remote a
Sep 19, 20167.597YESYES
A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to inject commands with the privileges of root. This vulnerability is d
Oct 25, 20237.296YESYES
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to rem
Jul 17, 20178.894YESYES
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow the following: An authenticated, remote
Sep 24, 20257.785YESNO
A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. An attacker could
Jul 17, 20178.884YESNO
A vulnerability in the quality of service (QoS) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of servi
Mar 28, 20189.875YESNO
A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. An attacker could
Jul 17, 20178.875YESNO

Exploit Exposure

Signals from CVEs in this product scope (541 CVEs).

CISA KEV
28 CVEs
5.2% of CVEs· 97th percentile
Metasploit
4 CVEs
0.7% of CVEs· 96th percentile
Nuclei
3 CVEs
0.6% of CVEs· 96th percentile
ExploitDB
5 CVEs
0.9% of CVEs· 87th percentile

Social Chatter

Signals from CVEs in this product scope (541 CVEs).

Media Mentions

Signals from CVEs in this product scope (541 CVEs).

Top CNAs Publishing CVEs For Ios Xe

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
fuji-16.8.117.52.0%00
fuji-16.7.117.52.0%00
everest-16.6.118.63.8%00
denali-16.3.418.67.8%10
denali-16.3.327.52.3%00
denali-16.3.117.53.9%00
99.9.0z17.53.8%00
5.2.0.base18.83.4%10
3.9s_3.9.2s26.72.5%00
3.9s_3.9.1s26.72.5%00
3.9s_3.9.1as26.72.5%00
3.9s_3.9.0s26.72.5%00
3.9s_3.9.0as26.72.5%00
3.9s\(.2\)37.83.0%00
3.9s.287.82.8%00
3.9s\(.1\)37.83.0%00
3.9s.187.82.8%00
3.9s\(.0\)37.83.0%00
3.9s.087.82.8%00
3.9s27.61.7%00