CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:N/I:N/A:P
AI Score
Confidence
High
EPSS
Percentile
56.0%
The session-manager service in Cisco StarOS 12.0, 12.2(300), 14.0, and 14.0(600) on ASR 5000 devices allows remote attackers to cause a denial of service (service reload and packet loss) via malformed HTTP packets, aka Bug ID CSCud14217.
Vendor | Product | Version | CPE |
---|---|---|---|
cisco | staros | 12.0 | cpe:2.3:o:cisco:staros:12.0:*:*:*:*:*:*:* |
cisco | staros | 12.2(300) | cpe:2.3:o:cisco:staros:12.2\(300\):*:*:*:*:*:*:* |
cisco | staros | 14.0 | cpe:2.3:o:cisco:staros:14.0:*:*:*:*:*:*:* |
cisco | staros | 14.0(600) | cpe:2.3:o:cisco:staros:14.0\(600\):*:*:*:*:*:*:* |
cisco | asr_5000 | - | cpe:2.3:h:cisco:asr_5000:-:*:*:*:*:*:*:* |
cisco | asr_5500 | - | cpe:2.3:h:cisco:asr_5500:-:*:*:*:*:*:*:* |
cisco | asr_5700 | - | cpe:2.3:h:cisco:asr_5700:-:*:*:*:*:*:*:* |