Lucene search

K
cveCiscoCVE-2012-5037
HistoryApr 23, 2014 - 11:52 a.m.

CVE-2012-5037

2014-04-2311:52:59
CWE-264
cisco
web.nvd.nist.gov
24
cisco ios
acl
catalyst 6500
catalyst 7600
denial of service
vulnerability
bug id
cscts16133

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:N/I:N/A:C

AI Score

6.6

Confidence

High

EPSS

0.001

Percentile

30.2%

The ACL implementation in Cisco IOS before 15.1(1)SY on Catalyst 6500 and 7600 devices allows local users to cause a denial of service (device reload) via a “no object-group” command followed by an object-group command, aka Bug ID CSCts16133.

Affected configurations

Nvd
Node
ciscoiosRange15.1
AND
ciscocatalyst_6500
OR
ciscocatalyst_7600
VendorProductVersionCPE
ciscoios*cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*
ciscocatalyst_6500*cpe:2.3:h:cisco:catalyst_6500:*:*:*:*:*:*:*:*
ciscocatalyst_7600*cpe:2.3:h:cisco:catalyst_7600:*:*:*:*:*:*:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:N/I:N/A:C

AI Score

6.6

Confidence

High

EPSS

0.001

Percentile

30.2%

Related for CVE-2012-5037