Cisco IOS XR

NewsSecurity Vulnerabilities

Cisco IOS XR Software Release 7.9.2 Denial of Service Vulnerability (CVE-2025-20141)

A vulnerability in the handling of specific packets that are punted from a line card to a route processor in Cisco IOS XR Software Release 7.9.2 could allow an unauthenticated, adjacent attacker to cause control plane traffic to stop working on multiple Cisco IOS XR platforms.

Read More
NewsSecurity Vulnerabilities

Cisco IOS XR Software Internet Key Exchange Version 2 Denial of Service Vulnerability (CVE-2025-20209)

CVE-2025-20209 – A vulnerability in the Internet Key Exchange version 2 (IKEv2) function of Cisco IOS XR Software could allow an unauthenticated, remote attacker to prevent an affected device from processing any control plane UDP packets.

Read More
Security VulnerabilitiesNews

Cisco IOS XR Software Broadband Network Gateway PPP over Ethernet Denial of Service Vulnerability [CVE-2022-20849]

A vulnerability in the Broadband Network Gateway PPP over Ethernet (PPPoE) feature of Cisco IOS XR Software could allow an

Read More
Security VulnerabilitiesNews

Cisco IOS XR Software Arbitrary File Read and Write Vulnerability [CVE-2021-34718]

CVE number = CVE-2021-34718 A vulnerability in the SSH Server process of Cisco IOS XR Software could allow an authenticated,

Read More
Security VulnerabilitiesNews

Cisco IOS XR Software Arbitrary File Read and Write Vulnerability [CVE-2021-34718]

CVE number – CVE-2021-34718 A vulnerability in the SSH Server process of Cisco IOS XR Software could allow an authenticated,

Read More
Security VulnerabilitiesNews

Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers Slow Path Forwarding Denial of Service Vulnerability [CVE-2020-26070]

CVE number – CVE-2020-26070 A vulnerability in the egress packet processing function of Cisco IOS XR Software for Cisco ASR 9000 Series

Read More
Security VulnerabilitiesNews

Cisco IOS XR Software Enhanced Preboot eXecution Environment Unsigned Code Execution Vulnerability [CVE-2020-3284]

CVE number – CVE-2020-3284 A vulnerability in the enhanced Preboot eXecution Environment (PXE) boot loader for Cisco IOS XR 64-bit Software

Read More