CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:N/I:N/A:C
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS
Percentile
52.6%
A vulnerability in the vDaemon process of Cisco SD-WAN Software could allow an unauthenticated, remote attacker to cause a device to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to insufficient handling of malformed packets. An attacker could exploit this vulnerability by sending crafted traffic to an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.
Vendor | Product | Version | CPE |
---|---|---|---|
cisco | catalyst_sd-wan_manager | * | cpe:2.3:a:cisco:catalyst_sd-wan_manager:*:*:*:*:*:*:*:* |
cisco | sd-wan_vbond_orchestrator | - | cpe:2.3:a:cisco:sd-wan_vbond_orchestrator:-:*:*:*:*:*:*:* |
cisco | vsmart_controller_firmware | - | cpe:2.3:o:cisco:vsmart_controller_firmware:-:*:*:*:*:*:*:* |
cisco | vsmart_controller | - | cpe:2.3:h:cisco:vsmart_controller:-:*:*:*:*:*:*:* |
cisco | vedge_100_firmware | - | cpe:2.3:o:cisco:vedge_100_firmware:-:*:*:*:*:*:*:* |
cisco | vedge_100 | - | cpe:2.3:h:cisco:vedge_100:-:*:*:*:*:*:*:* |
cisco | vedge_1000_firmware | - | cpe:2.3:o:cisco:vedge_1000_firmware:-:*:*:*:*:*:*:* |
cisco | vedge_1000 | - | cpe:2.3:h:cisco:vedge_1000:-:*:*:*:*:*:*:* |
cisco | vedge_100b_firmware | - | cpe:2.3:o:cisco:vedge_100b_firmware:-:*:*:*:*:*:*:* |
cisco | vedge_100b | - | cpe:2.3:h:cisco:vedge_100b:-:*:*:*:*:*:*:* |
[
{
"product": "Cisco SD-WAN Solution",
"vendor": "Cisco",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:N/I:N/A:C
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS
Percentile
52.6%