Lucene search

K
cve[email protected]CVE-2010-2825
HistoryOct 03, 2022 - 4:21 p.m.

CVE-2010-2825

2022-10-0316:21:08
web.nvd.nist.gov
29
cve-2010-2825
cisco
ace
sip
vulnerability
denial of service
device reload
tcp
udp
nvd

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

6.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

49.5%

Unspecified vulnerability in the SIP inspection feature on the Cisco Application Control Engine (ACE) Module with software A2(1.x) before A2(1.6), A2(2.x) before A2(2.3), and A2(3.x) before A2(3.1) for Catalyst 6500 series switches and 7600 series routers, and the Cisco Application Control Engine (ACE) 4710 appliance with software before A3(2.4), allows remote attackers to cause a denial of service (device reload) via crafted SIP packets over (1) TCP or (2) UDP, aka Bug IDs CSCta65603 and CSCta71569.

Affected configurations

NVD
Node
ciscoace_moduleRangea2\(3.1.0\)
OR
ciscoace_moduleRangea2\(3.1.6\)
OR
ciscoace_moduleRangea2\(3.2.2.0\)
AND
ciscocatalyst_6500
OR
ciscocatalyst_7600
Node
ciscoace_4710
OR
ciscoace_4710Matcha1\(2.0\)
OR
ciscoace_4710Matcha1\(2.3\)
OR
ciscoace_4710Matcha1\(8.0\)
OR
ciscoace_4710Matcha3\(1.0\)
OR
ciscoace_4710Matcha3\(2.0\)

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

6.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

49.5%