Логотип exploitDog
bind:CVE-2018-0475
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-0475

Количество 3

Количество 3

nvd логотип

CVE-2018-0475

больше 7 лет назад

A vulnerability in the implementation of the cluster feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation when handling Cluster Management Protocol (CMP) messages. An attacker could exploit this vulnerability by sending a malicious CMP message to an affected device. A successful exploit could allow the attacker to cause the switch to crash and reload or to hang, resulting in a DoS condition. If the switch hangs it will not reboot automatically, and it will need to be power cycled manually to recover.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-wr6p-fg29-rg69

больше 3 лет назад

A vulnerability in the implementation of the cluster feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation when handling Cluster Management Protocol (CMP) messages. An attacker could exploit this vulnerability by sending a malicious CMP message to an affected device. A successful exploit could allow the attacker to cause the switch to crash and reload or to hang, resulting in a DoS condition. If the switch hangs it will not reboot automatically, and it will need to be power cycled manually to recover.

CVSS3: 7.4
EPSS: Низкий
fstec логотип

BDU:2018-01628

больше 7 лет назад

Уязвимость механизма обработки сообщений по протоколу Cluster Management Protocol операционных систем Cisco IOS и Cisco IOS XE позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-0475

A vulnerability in the implementation of the cluster feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation when handling Cluster Management Protocol (CMP) messages. An attacker could exploit this vulnerability by sending a malicious CMP message to an affected device. A successful exploit could allow the attacker to cause the switch to crash and reload or to hang, resulting in a DoS condition. If the switch hangs it will not reboot automatically, and it will need to be power cycled manually to recover.

CVSS3: 7.4
0%
Низкий
больше 7 лет назад
github логотип
GHSA-wr6p-fg29-rg69

A vulnerability in the implementation of the cluster feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation when handling Cluster Management Protocol (CMP) messages. An attacker could exploit this vulnerability by sending a malicious CMP message to an affected device. A successful exploit could allow the attacker to cause the switch to crash and reload or to hang, resulting in a DoS condition. If the switch hangs it will not reboot automatically, and it will need to be power cycled manually to recover.

CVSS3: 7.4
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2018-01628

Уязвимость механизма обработки сообщений по протоколу Cluster Management Protocol операционных систем Cisco IOS и Cisco IOS XE позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.4
0%
Низкий
больше 7 лет назад

Уязвимостей на страницу