Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m5h2-j2j6-cwcw

Опубликовано: 23 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A vulnerability in the IPv6 DHCP version 6 (DHCPv6) relay and server features of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition. This vulnerability is due to insufficient validation of data boundaries. An attacker could exploit this vulnerability by sending crafted DHCPv6 messages to an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly.

A vulnerability in the IPv6 DHCP version 6 (DHCPv6) relay and server features of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition. This vulnerability is due to insufficient validation of data boundaries. An attacker could exploit this vulnerability by sending crafted DHCPv6 messages to an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly.

EPSS

Процентиль: 42%
0.00195
Низкий

7.5 High

CVSS3

Дефекты

CWE-129

Связанные уязвимости

CVSS3: 8.6
nvd
почти 3 года назад

A vulnerability in the IPv6 DHCP version 6 (DHCPv6) relay and server features of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition. This vulnerability is due to insufficient validation of data boundaries. An attacker could exploit this vulnerability by sending crafted DHCPv6 messages to an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly.

CVSS3: 8.6
fstec
почти 3 года назад

Уязвимость реализации протокола DHCPv6 операционных систем Cisco IOS XE и Cisco IOS, позволяющая нарушителю вызвать перезагрузку устройства или вызвать отказ в обслуживании

EPSS

Процентиль: 42%
0.00195
Низкий

7.5 High

CVSS3

Дефекты

CWE-129