Lucene search

K
nvd[email protected]NVD:CVE-2015-0635
HistoryMar 26, 2015 - 10:59 a.m.

CVE-2015-0635

2015-03-2610:59:00
CWE-20
web.nvd.nist.gov
3

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:P/I:P/A:C

AI Score

6.6

Confidence

High

EPSS

0.004

Percentile

73.8%

The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 12.2, 12.4, 15.0, 15.2, 15.3, and 15.4 and IOS XE 3.10.xS through 3.13.xS before 3.13.1S allows remote attackers to spoof Autonomic Networking Registration Authority (ANRA) responses, and consequently bypass intended device and node access restrictions or cause a denial of service (disrupted domain access), via crafted AN messages, aka Bug ID CSCup62191.

Affected configurations

Nvd
Node
ciscoios_xeMatch3.10s.0
OR
ciscoios_xeMatch3.10s.1
OR
ciscoios_xeMatch3.10s.2
OR
ciscoios_xeMatch3.10s.3
OR
ciscoios_xeMatch3.10s.4
OR
ciscoios_xeMatch3.10s.5
OR
ciscoios_xeMatch3.11s.0
OR
ciscoios_xeMatch3.11s.1
OR
ciscoios_xeMatch3.11s.2
OR
ciscoios_xeMatch3.11s.3
OR
ciscoios_xeMatch3.12s.0
OR
ciscoios_xeMatch3.12s.1
OR
ciscoios_xeMatch3.12s.2
OR
ciscoios_xeMatch3.13s.0
Node
ciscoiosMatch12.2\(33\)ird1
OR
ciscoiosMatch12.2\(33\)ire3
OR
ciscoiosMatch12.2\(33\)sxi4b
OR
ciscoiosMatch12.2\(44\)sq1
OR
ciscoiosMatch12.4\(25e\)jam1
OR
ciscoiosMatch12.4\(25e\)jap1m
OR
ciscoiosMatch12.4\(25e\)jaz1
OR
ciscoiosMatch15.0\(2\)ed1
OR
ciscoiosMatch15.2\(1\)ex
OR
ciscoiosMatch15.2\(2\)jb1
OR
ciscoiosMatch15.3\(2\)s2
OR
ciscoiosMatch15.3\(3\)ja1n
OR
ciscoiosMatch15.3\(3\)jab1
OR
ciscoiosMatch15.3\(3\)jn
OR
ciscoiosMatch15.3\(3\)jnb
OR
ciscoiosMatch15.3\(3\)s
OR
ciscoiosMatch15.3\(3\)s1
OR
ciscoiosMatch15.3\(3\)s2
OR
ciscoiosMatch15.3\(3\)s3
OR
ciscoiosMatch15.3\(3\)s4
OR
ciscoiosMatch15.3\(3\)s5
OR
ciscoiosMatch15.4\(1\)s
OR
ciscoiosMatch15.4\(1\)s1
OR
ciscoiosMatch15.4\(1\)s2
OR
ciscoiosMatch15.4\(1\)s3
OR
ciscoiosMatch15.4\(2\)s
OR
ciscoiosMatch15.4\(2\)s1
OR
ciscoiosMatch15.4\(2\)s2
OR
ciscoiosMatch15.4\(3\)s
VendorProductVersionCPE
ciscoios_xe3.10s.0cpe:2.3:o:cisco:ios_xe:3.10s.0:*:*:*:*:*:*:*
ciscoios_xe3.10s.1cpe:2.3:o:cisco:ios_xe:3.10s.1:*:*:*:*:*:*:*
ciscoios_xe3.10s.2cpe:2.3:o:cisco:ios_xe:3.10s.2:*:*:*:*:*:*:*
ciscoios_xe3.10s.3cpe:2.3:o:cisco:ios_xe:3.10s.3:*:*:*:*:*:*:*
ciscoios_xe3.10s.4cpe:2.3:o:cisco:ios_xe:3.10s.4:*:*:*:*:*:*:*
ciscoios_xe3.10s.5cpe:2.3:o:cisco:ios_xe:3.10s.5:*:*:*:*:*:*:*
ciscoios_xe3.11s.0cpe:2.3:o:cisco:ios_xe:3.11s.0:*:*:*:*:*:*:*
ciscoios_xe3.11s.1cpe:2.3:o:cisco:ios_xe:3.11s.1:*:*:*:*:*:*:*
ciscoios_xe3.11s.2cpe:2.3:o:cisco:ios_xe:3.11s.2:*:*:*:*:*:*:*
ciscoios_xe3.11s.3cpe:2.3:o:cisco:ios_xe:3.11s.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 431

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:P/I:P/A:C

AI Score

6.6

Confidence

High

EPSS

0.004

Percentile

73.8%