Cisco Aironet Access Point Software (IOS XE Controller)
11 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Cisco Aironet Access Point Software (IOS XE Controller), a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
Cisco Aironet Access Point Software (IOS XE Controller) CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 1 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 2 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 11 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical1
- High3
- Medium7
Latest CVEs
The 11 most recently published vulnerabilities affecting Cisco Aironet Access Point Software (IOS XE Controller).
- CVE-2025-20364A vulnerability in the Device Analytics action frame processing of Cisco Wireless Access Point (AP) Software could allow an unauthenticated, adjacent attacker to inject wireless 802.11 action frame...4.3
- CVE-2025-20365A vulnerability in the IPv6 Router Advertisement (RA) packet processing of Cisco Access Point Software could allow an unauthenticated, adjacent attacker to modify the IPv6 gateway on an affected de...4.3
- CVE-2024-20418Cisco Ultra-Reliable Wireless Backhaul Software Command Injection Vulnerability10.0
- CVE-2024-20271A vulnerability in the IP packet processing of Cisco Access Point (AP) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. ...8.6
- CVE-2024-20265A vulnerability in the boot process of Cisco Access Point (AP) Software could allow an unauthenticated, physical attacker to bypass the Cisco Secure Boot functionality and load a software image tha...5.9
- CVE-2024-20354A vulnerability in the handling of encrypted wireless frames of Cisco Aironet Access Point (AP) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) conditi...4.7
- CVE-2023-20176A vulnerability in the networking component of Cisco access point (AP) software could allow an unauthenticated, remote attacker to cause a temporary disruption of service. This vulnerability is ...5.8
- CVE-2023-20268Cisco Access Point Software Uncontrolled Resource Consumption Vulnerability4.7
- CVE-2022-20945Cisco Catalyst 9100 Series Access Points Association Request Denial of Service Vulnerability7.4
- CVE-2022-20728Cisco Access Points VLAN Bypass from Native VLAN Vulnerability4.7
- CVE-2021-1439Cisco Aironet Access Points FlexConnect Multicast DNS Denial of Service Vulnerability7.4
Product grouping is registry-driven, with AI assist and human review. How it works