CVE-2020-3566CISA KEVEPSS p89.1%

CVE-2020-3566Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability

Cisco / IOS XR

Description

Cisco IOS XR Distance Vector Multicast Routing Protocol (DVMRP) incorrectly handles Internet Group Management Protocol (IGMP) packets. Exploitation could allow an unauthenticated, remote attacker to immediately crash the IGMP process or make it consume available memory and eventually crash.

Scoring

EPSS3.96% probability of exploitation · percentile 89.1% · 2026-06-18T12:00:27Z

CISA KEV entry

Added to KEV: 2021-11-03

(incoming)1

TypeTargetConfidenceTier
KEVEntryCisco IOS XR Software DVMRP Memory Exhaustion Vulnerabilitykev-cve-2020-35660%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability
CVE
Cisco IOS XR Software Discovery Protocol Format String Vulnerability
CVE
Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability
CVE
Cisco IOS XE Software Ethernet Virtual Private Network Border Gateway Protocol Denial-of-Service Vulnerability
CVE
CVE-2025-20115
CVE
Cisco IOS and IOS XE Software SNMP Denial of Service and Remote Code Execution Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.