Product overview
Cisco IOS XE is tracked by BlackTree as an operating system or system software product. Its lifecycle page separates release identity, maintenance and security boundaries using the publisher's registered source.
Main capabilities
- Application and workload execution
- Hardware, networking and storage management
- Security updates and platform maintenance
Typical use
Used on endpoints, servers, appliances, virtual machines or cloud instances.
Deployment
Installed on physical or virtual systems, or delivered as an appliance or cloud image.
This category-level context is generated from the registered product identity. Confirm exact product capabilities on the publisher's page ↗.
Collected lifecycle data
| Product | Cisco IOS XE |
|---|
| Release | Lifecycle policy |
|---|
| Start or release | Not extracted |
|---|
| Lifecycle boundary | Continuous or not dated in the source |
|---|
| Date precision | Unknown |
|---|
Known exploited vulnerabilities
Catalogue updated 1 Oct 2026These are product-family matches in the CISA Known Exploited Vulnerabilities catalogue. Confirm the affected product version in the vendor advisory.
Cisco IOS XE Web UI Command Injection Vulnerability
Cisco IOS XE contains a command injection vulnerability in the web user interface. When chained with CVE-2023-20198, the attacker can leverage the new local user to elevate privilege to root and write the implant to the file system. Cisco identified CVE-2023-20273 as the vulnerability exploited to deploy the implant. CVE-2021-1435, previously associated with the exploitation events, is no longer believed to be related to this activity.
Cisco · Cisco IOS XE Web UIRansomware use: Unknown
CISA entry ↗Cisco IOS XE Web UI Privilege Escalation Vulnerability
Cisco IOS XE Web UI contains a privilege escalation vulnerability in the web user interface that could allow a remote, unauthenticated attacker to create an account with privilege level 15 access. The attacker can then use that account to gain control of the affected device.
Cisco · IOS XE Web UIRansomware use: Unknown
CISA entry ↗Cisco IOS and IOS XE Remote Code Execution Vulnerability
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device or remotely execute code with elevated privileges.
Cisco · IOS and IOS XERansomware use: Unknown
CISA entry ↗Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability
Format string vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device.
Cisco · IOS, XR, and XE SoftwareRansomware use: Unknown
CISA entry ↗Cisco IOS Software and Cisco IOS XE Software Improper Input Validation Vulnerability
A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow for denial-of-service (DoS).
Cisco · IOS XE SoftwareRansomware use: Unknown
CISA entry ↗Cisco IOS and IOS XE Software Improper Input Validation Vulnerability
A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 information in DHCP Version 4 (DHCPv4) packets can allow for denial-of-service (DoS).
Cisco · IOS and IOS XE SoftwareRansomware use: Unknown
CISA entry ↗Showing the 6 most recently added of 17 product-family matches.
Package vulnerability advisories
OSV advisories are matched through the registered package URL. A package-family match does not prove that the installed release is affected. Check the affected and fixed versions before remediation.
No package advisories have been linked for this product identity.
This is not evidence that the product has no vulnerabilities.
Source evidence
PRIMARYManual
Cisco IOS XE official lifecycle source
Types of software releases | Cisco IOS XE Software Support | Optional rebuilds | End-of-Sale and End-of-Life guideline definition | Cisco Catalyst SD-WAN Software release model | Cisco Catalyst SD-WAN Software Support | Optional rebuilds
Publisher identity used by product-specific official-source collectors.
First collected 12 Sep 2026 · Last collected 28 Sep 2026 · Review state accepted
Open official vendor source ↗