Description

A vulnerability in the Cisco IOx application hosting environment of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the Cisco IOx application hosting environment to stop responding, resulting in a denial of service (DoS) condition. This vulnerability is due to the improper handling of HTTP requests. An attacker could exploit this vulnerability by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to cause the Cisco IOx application hosting environment to stop responding. The IOx process will need to be manually restarted to recover services.

INFO

Published Date :

2025-05-07T17:38:10.585Z

Last Modified :

2025-05-07T19:42:21.616Z

Source :

cisco
AFFECTED PRODUCTS

The following products are affected by CVE-2025-20196 vulnerability.

Vendors Products
Cisco
  • 807 Industrial Integrated Services Router
  • 807 Industrial Integrated Services Router Firmware
  • 809 Industrial Integrated Services Router
  • 809 Industrial Integrated Services Router Firmware
  • 829 Industrial Integrated Services Router
  • 829 Industrial Integrated Services Router Firmware
  • Catalyst 9100
  • Catalyst 9105
  • Catalyst 9105ax
  • Catalyst 9105axi
  • Catalyst 9105axw
  • Catalyst 9105i
  • Catalyst 9105w
  • Catalyst 9115
  • Catalyst 9115 Ap
  • Catalyst 9115ax
  • Catalyst 9115axe
  • Catalyst 9115axi
  • Catalyst 9117
  • Catalyst 9117 Ap
  • Catalyst 9117ax
  • Catalyst 9117axi
  • Catalyst 9120
  • Catalyst 9120 Ap
  • Catalyst 9120ax
  • Catalyst 9120axe
  • Catalyst 9120axi
  • Catalyst 9120axp
  • Catalyst 9124
  • Catalyst 9124ax
  • Catalyst 9124axd
  • Catalyst 9124axi
  • Catalyst 9124d
  • Catalyst 9124e
  • Catalyst 9124i
  • Catalyst 9130
  • Catalyst 9130 Ap
  • Catalyst 9130ax
  • Catalyst 9130axe
  • Catalyst 9130axi
  • Catalyst 9136
  • Catalyst 9162
  • Catalyst 9164
  • Catalyst 9166
  • Catalyst 9166d1
  • Cgr1000
  • Cgr1000 Firmware
  • Ic3000 Industrial Compute Gateway
  • Ic3000 Industrial Compute Gateway Firmware
  • Ios Xe
  • Ir510 Wpan
  • Ir510 Wpan Firmware
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-20196.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact