boxscore/security
CVE · referencelatest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CVE-2025-20352

Cisco IOS and IOS XE
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  C  N  N  H    7.7   .3945   98.6   YES
AFFECTED
  Product                       Versions      Fixed
  IOS                           12.2(55)SE –  —
  Cisco IOS XE Software         3.5.0E –      —
  Cisco IOS XE Catalyst SD-WAN  16.9.1 –      —
TIMELINE
  Oct 10  Reserved by cisco
  Sep 24  Published (CNA: cisco)
  Sep 29  Added to CISA KEV, remediation due 2025-10-20
CWE-121 · CNA: cisco · CVSS v3.1 · 2 references · NVD status: Analyzed · KEV due October 20, 2025

Description

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow the following: An authenticated, remote attacker with low privileges could cause a denial of service (DoS) condition on an affected device that is running Cisco IOS Software or Cisco IOS XE Software. To cause the DoS, the attacker must have the SNMPv2c or earlier read-only community string or valid SNMPv3 user credentials. An authenticated, remote attacker with high privileges could execute code as the root user on an affected device that is running Cisco IOS XE Software. To execute code as the root user, the attacker must have the SNMPv1 or v2c read-only community string or valid SNMPv3 user credentials and administrative or privilege 15 credentials on the affected device. An attacker could exploit this vulnerability by sending a crafted SNMP packet to an affected device over IPv4 or IPv6 networks. This vulnerability is due to a stack overflow condition in the SNMP subsystem of the affected software. A successful exploit could allow a low-privileged attacker to cause the affected system to reload, resulting in a DoS condition, or allow a high-privileged attacker to execute arbitrary code as the root user and obtain full control of the affected system. Note: This vulnerability affects all versions of SNMP.

Lifecycle

Complete event history — 3 events, chronological
DateEventDetail
October 10, 2024ReservedReserved by cisco
September 24, 2025PublishedPublished (CNA: cisco)
September 29, 2025KEV ADDEDAdded to CISA KEV, remediation due 2025-10-20

Affected

Affected products and packages — 3 rows
VendorProduct / PackageEcosystemVersion introducedFixed
CiscoIOS—12.2(55)SE—
CiscoCisco IOS XE Software—3.5.0E—
CiscoCisco IOS XE Catalyst SD-WAN—16.9.1—

Weaknesses

CWE-121

References (2)

Related

Authoritative record: CVE-2025-20352 at cve.org

Vendors: cisco

Weaknesses: CWE-121

About this page

This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2025-20352 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Sunday, October 4, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.