Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-0466

Опубликовано: 05 окт. 2018
Источник: nvd
CVSS3: 6.5
CVSS2: 6.1
EPSS Низкий

Описание

A vulnerability in the Open Shortest Path First version 3 (OSPFv3) implementation in Cisco IOS and IOS XE Software could allow an unauthenticated, adjacent attacker to cause an affected device to reload. The vulnerability is due to incorrect handling of specific OSPFv3 packets. An attacker could exploit this vulnerability by sending crafted OSPFv3 Link-State Advertisements (LSA) to an affected device. An exploit could allow the attacker to cause an affected device to reload, leading to a denial of service (DoS) condition.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:cisco:ios:16.2.1:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios_xe:16.2.1:*:*:*:*:*:*:*

EPSS

Процентиль: 56%
0.00342
Низкий

6.5 Medium

CVSS3

6.1 Medium

CVSS2

Дефекты

CWE-399
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 6.5
github
больше 3 лет назад

A vulnerability in the Open Shortest Path First version 3 (OSPFv3) implementation in Cisco IOS and IOS XE Software could allow an unauthenticated, adjacent attacker to cause an affected device to reload. The vulnerability is due to incorrect handling of specific OSPFv3 packets. An attacker could exploit this vulnerability by sending crafted OSPFv3 Link-State Advertisements (LSA) to an affected device. An exploit could allow the attacker to cause an affected device to reload, leading to a denial of service (DoS) condition.

CVSS3: 7.4
fstec
больше 7 лет назад

Уязвимость реализации протокола OSPFv3 операционных систем Cisco IOS и Cisco IOS XE, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 56%
0.00342
Низкий

6.5 Medium

CVSS3

6.1 Medium

CVSS2

Дефекты

CWE-399
NVD-CWE-noinfo