7.8
CVE-2013-1165
- EPSS 1.89%
- Veröffentlicht 11.04.2013 10:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
- Erkennungen
Cisco IOS XE 2.x and 3.x before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR) allows remote attackers to cause a denial of service (card reload) by sending many crafted L2TP packets, aka Bug ID CSCtz23293.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Asr 1002-x Version -
Cisco ≫ Asr 1002 Fixed Router Version -
Cisco ≫ Asr 1023 Router Version -
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.89% | 0.769 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:C
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130410-asr1000