Ncs1001
Vendor:
First CVE: Jan 26, 2020 · Active for 6 years
20
Total CVEs
Bottom 1%
4.0
Avg CVEs / Year
Bottom 1%
7.8
Avg CVSS
Higher Avg CVSS than 87% of tracked products
10.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Ncs1001 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 26, 2020
6 years ago
Most Recent CVE
Apr 16, 2025
466 days ago
CVE Severity & Scoring
Ncs100120 CVEs
30%
60%
10%
All CVEs352,719 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local6 (30.0%)
Network12 (60.0%)
Unknown0 (0.0%)
Physical1 (5.0%)
Adjacent Network1 (5.0%)
Attack Complexity
Low20 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None19 (95.0%)
Unknown0 (0.0%)
Required1 (5.0%)
Privileges Required
Low5 (25.0%)
High2 (10.0%)
None13 (65.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (20 CVEs).
20 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-32433CRITICAL Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.3, OTP-26.2.5.11, and OTP-25.3.2.20, a SSH server may allow an attacker to perform | Apr 16, 2025 | 10.0 | 98 | YES | YES |
CVE-2022-20821MEDIUM A vulnerability in the health check RPM of Cisco IOS XR Software could allow an unauthenticated, remote attacker to access the Redis instance that is running within the NOSi contai | May 26, 2022 | 6.5 | 67 | YES | NO |
CVE-2019-16019HIGH Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allow an unauthenticated, remote at | Sep 23, 2020 | 8.6 | 28 | NO | NO |
CVE-2021-34720HIGH A vulnerability in the IP Service Level Agreements (IP SLA) responder and Two-Way Active Measurement Protocol (TWAMP) features of Cisco IOS XR Software could allow an unauthenticat | Sep 9, 2021 | 8.6 | 27 | NO | NO |
CVE-2020-3530HIGH A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local attacker to execute that command, even though admin | Sep 4, 2020 | 8.4 | 27 | NO | NO |
CVE-2019-16022HIGH Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allow an unauthenticated, remote at | Jan 26, 2020 | 8.6 | 27 | NO | NO |
CVE-2019-16020HIGH Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allow an unauthenticated, remote at | Jan 26, 2020 | 8.6 | 27 | NO | NO |
CVE-2019-15989HIGH A vulnerability in the implementation of the Border Gateway Protocol (BGP) functionality in Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial | Jan 26, 2020 | 8.6 | 27 | NO | NO |
CVE-2021-34718HIGH A vulnerability in the SSH Server process of Cisco IOS XR Software could allow an authenticated, remote attacker to overwrite and read arbitrary files on the local device. This vul | Sep 9, 2021 | 8.1 | 26 | NO | NO |
CVE-2020-3284CRITICAL A vulnerability in the enhanced Preboot eXecution Environment (PXE) boot loader for Cisco IOS XR 64-bit Software could allow an unauthenticated, remote attacker to execute unsigned | Nov 6, 2020 | 9.8 | 25 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (20 CVEs).
CISA KEV
2 CVEs
10.0% of CVEs· Bottom 1%
Metasploit
1 CVE
5.0% of CVEs· Bottom 1%
Nuclei
1 CVE
5.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (20 CVEs).
Media Mentions
Signals from CVEs in this product scope (20 CVEs).
Top CNAs Publishing CVEs For Ncs1001
Top CWEs
Versions
No cataloged versions.