Home/Product/cisco staros
Product

cisco staros

25 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-32433
< 2025.03
Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.3, OTP-26.2.5.11, and OTP-25.3.2.
10.0CRITICAL
CVE-2023-20046
< 21.22.14
A vulnerability in the key-based SSH authentication feature of Cisco StarOS Software could allow an authenticated, remote attacker
8.8HIGH
CVE-2022-20665
< 21.22.n6
A vulnerability in the CLI of Cisco StarOS could allow an authenticated, local attacker to elevate privileges on an affected devic
6.0MEDIUM
CVE-2021-1540
< 21.16.9
Multiple vulnerabilities in the authorization process of Cisco ASR 5000 Series Software (StarOS) could allow an authenticated, rem
8.1HIGH
CVE-2021-1539
< 21.16.9
Multiple vulnerabilities in the authorization process of Cisco ASR 5000 Series Software (StarOS) could allow an authenticated, rem
8.1HIGH
CVE-2021-1378
>= 21.9.0 and <= 21.19.10
A vulnerability in the SSH service of the Cisco StarOS operating system could allow an unauthenticated, remote attacker to cause a
5.3MEDIUM
CVE-2021-1353
< 21.22.0
A vulnerability in the IPv4 protocol handling of Cisco StarOS could allow an unauthenticated, remote attacker to cause a denial of
5.8MEDIUM
CVE-2021-1145
< 21.19.7
A vulnerability in the Secure FTP (SFTP) of Cisco StarOS for Cisco ASR 5000 Series Routers could allow an authenticated, remote at
6.5MEDIUM
CVE-2020-3602
< 21.19.n4
A vulnerability in the CLI of Cisco StarOS operating system for Cisco ASR 5000 Series Routers could allow an authenticated, local
6.3MEDIUM
CVE-2020-3601
< 21.19.n4
A vulnerability in the CLI of Cisco StarOS operating system for Cisco ASR 5000 Series Routers could allow an authenticated, local
4.4MEDIUM
CVE-2020-3500
< 21.18.3
A vulnerability in the IPv6 implementation of Cisco StarOS could allow an unauthenticated, remote attacker to cause a denial of se
6.8MEDIUM
CVE-2020-3244
< 21.18.0
A vulnerability in the Enhanced Charging Service (ECS) functionality of Cisco ASR 5000 Series Aggregation Services Routers could a
5.3MEDIUM
CVE-2019-16026
< 21.16.1
A vulnerability in the implementation of the Stream Control Transmission Protocol (SCTP) on Cisco Mobility Management Entity (MME)
5.9MEDIUM
CVE-2019-1869
>= 21.6 and < 21.6.13
A vulnerability in the internal packet-processing functionality of the Cisco StarOS operating system running on virtual platforms
8.6HIGH
CVE-2018-0369
>= 21.3 and < 21.3.15
A vulnerability in the reassembly logic for fragmented IPv4 packets of Cisco StarOS running on virtual platforms could allow an un
8.6HIGH
CVE-2018-0273
all versions
A vulnerability in the IPsec Manager of Cisco StarOS for Cisco Aggregation Services Router (ASR) 5000 Series Routers and Virtualiz
5.3MEDIUM
CVE-2018-0239
all versions
A vulnerability in the egress packet processing functionality of the Cisco StarOS operating system for Cisco Aggregation Services
7.5HIGH
CVE-2018-0224
all versions
A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series Aggregation Services Routers could allow
6.7MEDIUM
CVE-2018-0122
all versions
A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series Aggregation Services Routers could allow
4.4MEDIUM
CVE-2018-0115
all versions
A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series routers could allow an authenticated, lo
6.7MEDIUM
CVE-2017-6707
all versions
A vulnerability in the CLI command-parsing code of the Cisco StarOS operating system for Cisco ASR 5000 Series 11.0 through 21.0,
8.2HIGH
CVE-2017-3865
all versions
A vulnerability in the IPsec component of Cisco StarOS for Cisco ASR 5000 Series Routers could allow an unauthenticated, remote at
5.8MEDIUM
CVE-2015-0712
all versions
The session-manager service in Cisco StarOS 12.0, 12.2(300), 14.0, and 14.0(600) on ASR 5000 devices allows remote attackers to ca
CVE-2015-0711
all versions
The hamgr service in the IPv6 Proxy Mobile (PM) implementation in Cisco StarOS 18.1.0.59776 on ASR 5000 devices allows remote atta
CVE-2013-0149
all versions
The OSPF implementation in Cisco IOS 12.0 through 12.4 and 15.0 through 15.3, IOS-XE 2.x through 3.9.xS, ASA and PIX 7.x through 9
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin