Lucene search

K
cveCiscoCVE-2013-6692
HistoryNov 22, 2013 - 1:55 a.m.

CVE-2013-6692

2013-11-2201:55:04
CWE-399
cisco
web.nvd.nist.gov
26
cisco
ios xe
dhcp
denial of service
cve-2013-6692
nvd
vulnerability
bug id cscuh04949

CVSS2

6.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:N/I:N/A:C

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

43.8%

Cisco IOS XE 3.8S(.2) and earlier does not properly use a DHCP pool during assignment of an IP address, which allows remote authenticated users to cause a denial of service (device reload) via an AAA packet that triggers an address requirement, aka Bug ID CSCuh04949.

Affected configurations

Nvd
Node
ciscoios_xeRange3.8s\(.2\)
OR
ciscoios_xeMatch3.7.0s
OR
ciscoios_xeMatch3.7.1s
OR
ciscoios_xeMatch3.7.2s
OR
ciscoios_xeMatch3.8.0s
OR
ciscoios_xeMatch3.8s\(.0\)
OR
ciscoios_xeMatch3.8s\(.1\)
VendorProductVersionCPE
ciscoios_xe*cpe:2.3:o:cisco:ios_xe:*:*:*:*:*:*:*:*
ciscoios_xe3.7.0scpe:2.3:o:cisco:ios_xe:3.7.0s:*:*:*:*:*:*:*
ciscoios_xe3.7.1scpe:2.3:o:cisco:ios_xe:3.7.1s:*:*:*:*:*:*:*
ciscoios_xe3.7.2scpe:2.3:o:cisco:ios_xe:3.7.2s:*:*:*:*:*:*:*
ciscoios_xe3.8.0scpe:2.3:o:cisco:ios_xe:3.8.0s:*:*:*:*:*:*:*
ciscoios_xe3.8s(.0)cpe:2.3:o:cisco:ios_xe:3.8s\(.0\):*:*:*:*:*:*:*
ciscoios_xe3.8s(.1)cpe:2.3:o:cisco:ios_xe:3.8s\(.1\):*:*:*:*:*:*:*

CVSS2

6.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:N/I:N/A:C

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

43.8%

Related for CVE-2013-6692