Cisco IOS XE Web-Based IOx Environment CRLF Injection Vulnerability

Vulnerability

A CRLF injection vulnerability has been identified in the web-based Cisco IOx application hosting environment management interface of Cisco IOS XE Software. This vulnerability allows an unauthenticated, remote attacker to exploit insufficient input validation by sending crafted packets to an affected device. Successful exploitation could enable the attacker to inject arbitrary log entries, manipulate log file structures, or obscure legitimate log events.

Impact

Exploitation of this vulnerability could lead to unauthorized log injection, log manipulation, and obscuring of genuine log events.

Remediation

Cisco has released software updates to address this vulnerability. For guidance on upgrading, consult the Cisco IOS and IOS XE Software Security Advisory Bundled Publication or use the Cisco Software Checker tool to identify the first fixed release.

Added: Mar 25, 2026, 4:24 PM
Updated: Mar 25, 2026, 4:24 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
0.6
exploitability
7.0
remediation
0.0
relevance
4.7
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.