Cisco IOS XE 3.11.10e

CPE Details

Cisco IOS XE 3.11.10e
3.11.10e
2024-12-19
12h52 +00:00
2024-12-19
12h52 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:cisco:ios_xe:3.11.10e:*:*:*:*:*:*:*

Informations

Vendor

cisco

Product

ios_xe

Version

3.11.10e

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-20414 2024-09-25 16h29 +00:00 A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system through the web UI. This vulnerability is due to incorrectly accepting configuration changes through the HTTP GET method. An attacker could exploit this vulnerability by persuading a currently authenticated administrator to follow a crafted link. A successful exploit could allow the attacker to change the configuration of the affected device.
6.5
Medium
CVE-2024-20433 2024-09-25 16h26 +00:00 A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to a buffer overflow when processing crafted RSVP packets. An attacker could exploit this vulnerability by sending RSVP traffic to an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition.
8.6
High