Uniqcli

Cisco IOS Security Advisories & Vulnerabilities

Recent Cisco PSIRT advisories affecting Classic IOS software on Catalyst and ISR platforms. Search, check severity and CVSS, and get a remediation or refresh quote from an authorized Cisco partner.

7 recent advisories affecting Cisco IOS

  • Cisco Secure Firewall Adaptive Security Appliance Software, Secure Firewall Threat Defense Software, IOS Software, IOS XE Software, and IOS XR Software Web Services Remote Code Execution Vulnerability

    Critical · CVSS 9
    CVE-2025-20363Published Sep 25, 2025cisco-sa-http-code-exec-WmfP3h3O

    Affected: Cisco IOS XR Software , Cisco IOS 12.2(15)B, Cisco IOS 12.2(16)B1, Cisco IOS 12.2(16)B3, Cisco IOS 12.2(16)B2, Cisco IOS 12.2(15)B1, and 3236 more

  • Cisco IOS Software and IOS XE Software Release 3E HTTP Server Denial of Service Vulnerability

    High · CVSS 7.7
    CVE-2026-20125Published Mar 25, 2026cisco-sa-ios-http-dos-sbv8XRpL

    Affected: Cisco IOS 12.2(33)CY, Cisco IOS 12.2(33)CY1, Cisco IOS 12.2(33)CY2, Cisco IOS 12.2(55)SE, Cisco IOS 12.2(55)SE3, Cisco IOS 12.2(55)SE2, and 1243 more

  • Cisco IOS Software Industrial Ethernet Switch Device Manager Denial of Service Vulnerability

    High · CVSS 7.7
    CVE-2025-20327Published Sep 24, 2025cisco-sa-ios-invalid-url-dos-Nvxszf6u

    Affected: Cisco IOS 15.2(6)E2, Cisco IOS 15.2(7)E, Cisco IOS 15.2(6)E2a, Cisco IOS 15.2(6)E2b, Cisco IOS 15.2(7)E1, Cisco IOS 15.2(7)E0a, and 24 more

  • Cisco IOS Software for Cisco Catalyst 2960X, 2960XR, 2960CX, and 3560CX Series Switches Secure Boot Bypass Vulnerability

    High · CVSS 6.8
    CVE-2025-20181Published May 7, 2025cisco-sa-c2960-3560-sboot-ZtqADrHq

    Affected: Cisco IOS 15.0(1)XO1, Cisco IOS 15.0(1)XO, Cisco IOS 15.0(2)XO, Cisco IOS 15.0(1)EY, Cisco IOS 15.0(1)EY1, Cisco IOS 15.0(1)EY2, and 124 more

  • Cisco Adaptive Security Appliance Software, Firepower Threat Defense Software, IOS Software, and IOS XE Software IKEv2 Denial of Service Vulnerability

    High · CVSS 8.6
    CVE-2025-20182Published May 7, 2025cisco-sa-multiprod-ikev2-dos-gPctUqv2

    Affected: Cisco IOS 12.4(24)T, Cisco IOS 12.4(24)T3, Cisco IOS 12.4(22)T1, Cisco IOS 12.4(24)T5, Cisco IOS 12.4(24)T4, Cisco IOS 12.4(22)T, and 1525 more

  • Cisco IOS Software Industrial Ethernet Switch Device Manager Privilege Escalation Vulnerability

    High · CVSS 8.3
    CVE-2025-20164Published May 7, 2025cisco-sa-ios-http-privesc-wCRd5e3

    Affected: Cisco IOS 12.2(60)EZ14, Cisco IOS 12.2(60)EZ15, Cisco IOS 15.0(2)SE8, Cisco IOS 15.0(2)EA, Cisco IOS 15.0(2)EA1, Cisco IOS 15.2(2)E, and 117 more

  • Cisco IOS Software for Catalyst 6000 Series Switches Denial of Service Vulnerability

    High · CVSS 7.4
    CVE-2024-20276Published Mar 27, 2024cisco-sa-ios-dos-Hq4d3tZG

    Affected: Cisco IOS , Cisco IOS 15.5(1)SY5, Cisco IOS 15.5(1)SY6, Cisco IOS 15.5(1)SY7, Cisco IOS 15.5(1)SY8, Cisco IOS 15.5(1)SY9, and 2 more

Free exposure report

Find out which Cisco vulnerabilities affect your Cisco IOS

Send your device list, PIDs, or serials and an authorized Cisco partner will map them to current PSIRT advisories, flag what is end-of-life, and return the patch or refresh path — GPC-payable, with TAA-compliant options. No cost, no obligation.

  • Affected CVEs & severity
  • Fixed release or replacement
  • End-of-life check
  • GPC-payable quote
Check end-of-life

Frequently asked questions

What are the latest Cisco IOS security advisories?

This page lists recent Cisco security advisories affecting Cisco IOS, from the Cisco PSIRT openVuln feed, with severity, CVSS, and CVEs. Confirm the affected software versions against what you run.

How do I fix a Cisco IOS vulnerability?

Most Cisco vulnerabilities are fixed by upgrading to a patched software release or applying the documented mitigation. If the platform is end-of-life, the remedy is a refresh. Uniqcli, an authorized Cisco partner, scopes the patch or replacement and can quote it TAA-compliant and GPC-payable.

Is Cisco IOS still supported?

Security fixes are only available while a product is supported. Check our Cisco end-of-life lookup to confirm the Last Date of Support, then patch (if supported) or plan a refresh with Uniqcli.

Data from the Cisco PSIRT openVuln API, shown for reference; Cisco’s official advisories are authoritative. Cisco and PSIRT are trademarks of Cisco Systems, Inc.; Uniqcli LLC is an independent authorized Cisco partner.