Lucene search

K
cveCiscoCVE-2012-3946
HistoryApr 24, 2014 - 10:55 a.m.

CVE-2012-3946

2014-04-2410:55:02
CWE-264
cisco
web.nvd.nist.gov
24
cisco
ios
vulnerability
bypass
interface
acl
restrictions
ipv6
bug id
cscty73682
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

7

Confidence

Low

EPSS

0.005

Percentile

75.3%

Cisco IOS before 15.3(2)S allows remote attackers to bypass interface ACL restrictions in opportunistic circumstances by sending IPv6 packets in an unspecified scenario in which expected packet drops do not occur for “a small percentage” of the packets, aka Bug ID CSCty73682.

Affected configurations

Nvd
Node
ciscoiosRange15.3
VendorProductVersionCPE
ciscoios*cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

7

Confidence

Low

EPSS

0.005

Percentile

75.3%

Related for CVE-2012-3946