Описание
Cisco IOS software 11.3 through 12.2 running on Cisco uBR7200 and uBR7100 series Universal Broadband Routers allows remote attackers to modify Data Over Cable Service Interface Specification (DOCSIS) settings via a DOCSIS file without a Message Integrity Check (MIC) signature, which is approved by the router.
Ссылки
- Not ApplicablePatchVendor Advisory
- Broken LinkPatchThird Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Not ApplicablePatchVendor Advisory
- Broken LinkPatchThird Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия от 11.3 (включая) до 12.2 (включая)
Одновременно
cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*
Одно из
cpe:2.3:h:cisco:ubr7100:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ubr7200:-:*:*:*:*:*:*:*
EPSS
Процентиль: 58%
0.00363
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-347
Связанные уязвимости
CVSS3: 7.5
github
почти 4 года назад
Cisco IOS software 11.3 through 12.2 running on Cisco uBR7200 and uBR7100 series Universal Broadband Routers allows remote attackers to modify Data Over Cable Service Interface Specification (DOCSIS) settings via a DOCSIS file without a Message Integrity Check (MIC) signature, which is approved by the router.
EPSS
Процентиль: 58%
0.00363
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-347