8.6

CVE-2022-20919

A vulnerability in the processing of malformed Common Industrial Protocol (CIP) packets that are sent to Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to unexpectedly reload, resulting in a denial of service (DoS) condition. This vulnerability is due to insufficient input validation during processing of CIP packets. An attacker could exploit this vulnerability by sending a malformed CIP packet to an affected device. A successful exploit could allow the attacker to cause the affected device to unexpectedly reload, resulting in a DoS condition.

Data is provided by the National Vulnerability Database (NVD)
CiscoIos Xe Version17.9.1
   Cisco1000 Integrated Services Router Version-
   Cisco1100-4g Integrated Services Router Version-
   Cisco1100-4p Integrated Services Router Version-
   Cisco1100-6g Integrated Services Router Version-
   Cisco1100-8p Integrated Services Router Version-
   Cisco1100 Integrated Services Router Version-
   Cisco1101-4p Integrated Services Router Version-
   Cisco1101 Integrated Services Router Version-
   Cisco1109-2p Integrated Services Router Version-
   Cisco1109-4p Integrated Services Router Version-
   Cisco1109 Integrated Services Router Version-
   Cisco1111x-8p Integrated Services Router Version-
   Cisco1111x Integrated Services Router Version-
   Cisco1120 Integrated Services Router Version-
   Cisco1131 Integrated Services Router Version-
   Cisco1160 Integrated Services Router Version-
   Cisco4221 Integrated Services Router Version-
   Cisco4321 Integrated Services Router Version-
   Cisco4331 Integrated Services Router Version-
   Cisco4351 Integrated Services Router Version-
   Cisco4431 Integrated Services Router Version-
   Cisco4451-x Integrated Services Router Version-
   Cisco4451 Integrated Services Router Version-
   Cisco4461 Integrated Services Router Version-
   CiscoAsr-920-10sz-pd Version-
   CiscoAsr-920-12cz-a Version-
   CiscoAsr-920-12cz-d Version-
   CiscoAsr-920-12sz-a Version-
   CiscoAsr-920-12sz-d Version-
   CiscoAsr-920-12sz-im Version-
   CiscoAsr-920-12sz-im-cc Version-
   CiscoAsr-920-20sz-m Version-
   CiscoAsr-920-24sz-im Version-
   CiscoAsr-920-24sz-m Version-
   CiscoAsr-920-24tz-im Version-
   CiscoAsr-920-24tz-m Version-
   CiscoAsr-920-4sz-a Version-
   CiscoAsr-920-4sz-d Version-
   CiscoAsr-9901-rp Version-
   CiscoAsr 1000-esp100 Version-
   CiscoAsr 1000-x Version-
   CiscoAsr 1001 Version-
   CiscoAsr 1001-hx Version-
   CiscoAsr 1001-hx R Version-
   CiscoAsr 1001-x Version-
   CiscoAsr 1001-x R Version-
   CiscoAsr 1002 Version-
   CiscoAsr 1002-hx Version-
   CiscoAsr 1002-hx R Version-
   CiscoAsr 1002-x Version-
   CiscoAsr 1002-x R Version-
   CiscoAsr 1002 Fixed Router Version-
   CiscoAsr 1004 Version-
   CiscoAsr 1006 Version-
   CiscoAsr 1006-x Version-
   CiscoAsr 1009-x Version-
   CiscoAsr 1013 Version-
   CiscoAsr 1023 Version-
   CiscoAsr 1023 Router Version-
   CiscoAsr 5000 Version-
   CiscoAsr 5500 Version-
   CiscoAsr 5700 Version-
   CiscoAsr 900 Version-
   CiscoAsr 900 Version-
   CiscoAsr 900 Route Switch Processor 2 (rsp2) Version-
   CiscoAsr 900 Route Switch Processor 3 (rsp3) Version-
   CiscoAsr 9000 Version-
   CiscoAsr 9000 Version- HwPlatform-
   CiscoAsr 9000 Version- HwPlatformx64
   CiscoAsr 9000 Rsp440 Router Version-
   CiscoAsr 9000v Version-
   CiscoAsr 9000v Version- HwPlatformx64
   CiscoAsr 9000v Versionv2
   CiscoAsr 9001 Version-
   CiscoAsr 9001 Version- HwPlatformx64
   CiscoAsr 9006 Version-
   CiscoAsr 9006 Version- HwPlatformx64
   CiscoAsr 901-12c-f-d Version-
   CiscoAsr 901-12c-ft-d Version-
   CiscoAsr 901-4c-f-d Version-
   CiscoAsr 901-4c-ft-d Version-
   CiscoAsr 901-6cz-f-a Version-
   CiscoAsr 901-6cz-f-d Version-
   CiscoAsr 901-6cz-fs-a Version-
   CiscoAsr 901-6cz-fs-d Version-
   CiscoAsr 901-6cz-ft-a Version-
   CiscoAsr 901-6cz-ft-d Version-
   CiscoAsr 9010 Version-
   CiscoAsr 9010 Version- HwPlatform-
   CiscoAsr 9010 Version- HwPlatformx64
   CiscoAsr 901s-2sg-f-ah Version-
   CiscoAsr 901s-2sg-f-d Version-
   CiscoAsr 901s-3sg-f-ah Version-
   CiscoAsr 901s-3sg-f-d Version-
   CiscoAsr 901s-4sg-f-d Version-
   CiscoAsr 902 Version-
   CiscoAsr 902u Version-
   CiscoAsr 903 Version-
   CiscoAsr 907 Version-
   CiscoAsr 914 Version-
   CiscoAsr 920-10sz-pd Version-
   CiscoAsr 920-10sz-pd R Version-
   CiscoAsr 920-10sz-pd Router Version-
   CiscoAsr 920-12cz-a Version-
   CiscoAsr 920-12cz-a R Version-
   CiscoAsr 920-12cz-a Router Version-
   CiscoAsr 920-12cz-d Version-
   CiscoAsr 920-12cz-d R Version-
   CiscoAsr 920-12cz-d Router Version-
   CiscoAsr 920-12sz-im Version-
   CiscoAsr 920-12sz-im R Version-
   CiscoAsr 920-12sz-im Router Version-
   CiscoAsr 920-24sz-im Version-
   CiscoAsr 920-24sz-im R Version-
   CiscoAsr 920-24sz-im Router Version-
   CiscoAsr 920-24sz-m Version-
   CiscoAsr 920-24sz-m R Version-
   CiscoAsr 920-24sz-m Router Version-
   CiscoAsr 920-24tz-m Version-
   CiscoAsr 920-24tz-m R Version-
   CiscoAsr 920-24tz-m Router Version-
   CiscoAsr 920-4sz-a Version-
   CiscoAsr 920-4sz-a R Version-
   CiscoAsr 920-4sz-a Router Version-
   CiscoAsr 920-4sz-d Version-
   CiscoAsr 920-4sz-d R Version-
   CiscoAsr 920-4sz-d Router Version-
   CiscoAsr 920u-12sz-im Version-
   CiscoAsr 9901 Version-
   CiscoAsr 9901 Version- HwPlatformx64
   CiscoAsr 9903 Version-
   CiscoAsr 9904 Version-
   CiscoAsr 9904 Version- HwPlatform-
   CiscoAsr 9904 Version- HwPlatformx64
   CiscoAsr 9906 Version-
   CiscoAsr 9906 Version- HwPlatformx64
   CiscoAsr 9910 Version-
   CiscoAsr 9910 Version- HwPlatform-
   CiscoAsr 9910 Version- HwPlatformx64
   CiscoAsr 9912 Version-
   CiscoAsr 9912 Version- HwPlatform-
   CiscoAsr 9912 Version- HwPlatformx64
   CiscoAsr 9920 Version-
   CiscoAsr 9922 Version-
   CiscoAsr 9922 Version- HwPlatform-
   CiscoAsr1000-2t+20x1ge Version-
   CiscoAsr1000-6tge Version-
   CiscoAsr1000-esp200 Version-
   CiscoAsr1000-mip100 Version-
   CiscoAsr1000-rp3 Version-
   CiscoAsr1001-hx Version-
   CiscoAsr1001-hx-rf Version-
   CiscoAsr1001-x Version-
   CiscoAsr1001-x-rf Version-
   CiscoAsr1001-x-ws Version-
   CiscoAsr1002-hx Version-
   CiscoAsr1002-hx-rf Version-
   CiscoAsr1002-hx-ws Version-
   CiscoAsr1002-x Version-
   CiscoAsr1002-x-rf Version-
   CiscoAsr1002-x-ws Version-
   CiscoCatalyst 3850 Version-
   CiscoCatalyst 3850-12s-e Version-
   CiscoCatalyst 3850-12s-s Version-
   CiscoCatalyst 3850-12x48u Version-
   CiscoCatalyst 3850-12xs-e Version-
   CiscoCatalyst 3850-12xs-s Version-
   CiscoCatalyst 3850-16xs-e Version-
   CiscoCatalyst 3850-16xs-s Version-
   CiscoCatalyst 3850-24p-e Version-
   CiscoCatalyst 3850-24p-l Version-
   CiscoCatalyst 3850-24p-s Version-
   CiscoCatalyst 3850-24pw-s Version-
   CiscoCatalyst 3850-24s-e Version-
   CiscoCatalyst 3850-24s-s Version-
   CiscoCatalyst 3850-24t-e Version-
   CiscoCatalyst 3850-24t-l Version-
   CiscoCatalyst 3850-24t-s Version-
   CiscoCatalyst 3850-24u Version-
   CiscoCatalyst 3850-24u-e Version-
   CiscoCatalyst 3850-24u-l Version-
   CiscoCatalyst 3850-24u-s Version-
   CiscoCatalyst 3850-24xs Version-
   CiscoCatalyst 3850-24xs-e Version-
   CiscoCatalyst 3850-24xs-s Version-
   CiscoCatalyst 3850-24xu Version-
   CiscoCatalyst 3850-24xu-e Version-
   CiscoCatalyst 3850-24xu-l Version-
   CiscoCatalyst 3850-24xu-s Version-
   CiscoCatalyst 3850-32xs-e Version-
   CiscoCatalyst 3850-32xs-s Version-
   CiscoCatalyst 3850-48f-e Version-
   CiscoCatalyst 3850-48f-l Version-
   CiscoCatalyst 3850-48f-s Version-
   CiscoCatalyst 3850-48p-e Version-
   CiscoCatalyst 3850-48p-l Version-
   CiscoCatalyst 3850-48p-s Version-
   CiscoCatalyst 3850-48pw-s Version-
   CiscoCatalyst 3850-48t-e Version-
   CiscoCatalyst 3850-48t-l Version-
   CiscoCatalyst 3850-48t-s Version-
   CiscoCatalyst 3850-48u Version-
   CiscoCatalyst 3850-48u-e Version-
   CiscoCatalyst 3850-48u-l Version-
   CiscoCatalyst 3850-48u-s Version-
   CiscoCatalyst 3850-48xs Version-
   CiscoCatalyst 3850-48xs-e Version-
   CiscoCatalyst 3850-48xs-f-e Version-
   CiscoCatalyst 3850-48xs-f-s Version-
   CiscoCatalyst 3850-48xs-s Version-
   CiscoCatalyst 3850-nm-2-40g Version-
   CiscoCatalyst 3850-nm-8-10g Version-
   CiscoCatalyst 8200 Version-
   CiscoCatalyst 8300 Version-
   CiscoCatalyst 8300-1n1s-4t2x Version-
   CiscoCatalyst 8300-1n1s-6t Version-
   CiscoCatalyst 8300-2n2s-4t2x Version-
   CiscoCatalyst 8300-2n2s-6t Version-
   CiscoCatalyst 8500 Version-
   CiscoCatalyst 8500-4qc Version-
   CiscoCatalyst 8500l Version-
   CiscoCatalyst 8510csr Version-
   CiscoCatalyst 8510msr Version-
   CiscoCatalyst 8540csr Version-
   CiscoCatalyst 8540msr Version-
   CiscoCatalyst 9100 Version-
   CiscoCatalyst 9105 Version-
   CiscoCatalyst 9105axi Version-
   CiscoCatalyst 9105axw Version-
   CiscoCatalyst 9115 Version-
   CiscoCatalyst 9115 Ap Version-
   CiscoCatalyst 9115axe Version-
   CiscoCatalyst 9115axi Version-
   CiscoCatalyst 9117 Version-
   CiscoCatalyst 9117 Ap Version-
   CiscoCatalyst 9117axi Version-
   CiscoCatalyst 9120 Version-
   CiscoCatalyst 9120 Ap Version-
   CiscoCatalyst 9120axe Version-
   CiscoCatalyst 9120axi Version-
   CiscoCatalyst 9120axp Version-
   CiscoCatalyst 9124 Version-
   CiscoCatalyst 9124axd Version-
   CiscoCatalyst 9124axi Version-
   CiscoCatalyst 9130 Version-
   CiscoCatalyst 9130 Ap Version-
   CiscoCatalyst 9130axe Version-
   CiscoCatalyst 9130axi Version-
   CiscoCatalyst 9200 Version-
   CiscoCatalyst 9200cx Version-
   CiscoCatalyst 9200l Version-
   CiscoCatalyst 9300 Version-
   CiscoCatalyst 9300-24p-a Version-
   CiscoCatalyst 9300-24p-e Version-
   CiscoCatalyst 9300-24s-a Version-
   CiscoCatalyst 9300-24s-e Version-
   CiscoCatalyst 9300-24t-a Version-
   CiscoCatalyst 9300-24t-e Version-
   CiscoCatalyst 9300-24u-a Version-
   CiscoCatalyst 9300-24u-e Version-
   CiscoCatalyst 9300-24ux-a Version-
   CiscoCatalyst 9300-24ux-e Version-
   CiscoCatalyst 9300-48p-a Version-
   CiscoCatalyst 9300-48p-e Version-
   CiscoCatalyst 9300-48s-a Version-
   CiscoCatalyst 9300-48s-e Version-
   CiscoCatalyst 9300-48t-a Version-
   CiscoCatalyst 9300-48t-e Version-
   CiscoCatalyst 9300-48u-a Version-
   CiscoCatalyst 9300-48u-e Version-
   CiscoCatalyst 9300-48un-a Version-
   CiscoCatalyst 9300-48un-e Version-
   CiscoCatalyst 9300-48uxm-a Version-
   CiscoCatalyst 9300-48uxm-e Version-
   CiscoCatalyst 9300l Version-
   CiscoCatalyst 9300l-24p-4g-a Version-
   CiscoCatalyst 9300l-24p-4g-e Version-
   CiscoCatalyst 9300l-24p-4x-a Version-
   CiscoCatalyst 9300l-24p-4x-e Version-
   CiscoCatalyst 9300l-24t-4g-a Version-
   CiscoCatalyst 9300l-24t-4g-e Version-
   CiscoCatalyst 9300l-24t-4x-a Version-
   CiscoCatalyst 9300l-24t-4x-e Version-
   CiscoCatalyst 9300l-48p-4g-a Version-
   CiscoCatalyst 9300l-48p-4g-e Version-
   CiscoCatalyst 9300l-48p-4x-a Version-
   CiscoCatalyst 9300l-48p-4x-e Version-
   CiscoCatalyst 9300l-48t-4g-a Version-
   CiscoCatalyst 9300l-48t-4g-e Version-
   CiscoCatalyst 9300l-48t-4x-a Version-
   CiscoCatalyst 9300l-48t-4x-e Version-
   CiscoCatalyst 9300l Stack Version-
   CiscoCatalyst 9300lm Version-
   CiscoCatalyst 9300x Version-
   CiscoCatalyst 9400 Version-
   CiscoCatalyst 9400 Supervisor Engine-1 Version-
   CiscoCatalyst 9407r Version-
   CiscoCatalyst 9410r Version-
   CiscoCatalyst 9500 Version-
   CiscoCatalyst 9500h Version-
   CiscoCatalyst 9600 Version-
   CiscoCatalyst 9600 Supervisor Engine-1 Version-
   CiscoCatalyst 9600x Version-
   CiscoCatalyst 9800 Version-
   CiscoCatalyst 9800-40 Version-
   CiscoCatalyst 9800-40 Wireless Controller Version-
   CiscoCatalyst 9800-80 Version-
   CiscoCatalyst 9800-80 Wireless Controller Version-
   CiscoCatalyst 9800-cl Version-
   CiscoCatalyst 9800-l Version-
   CiscoCatalyst 9800-l-c Version-
   CiscoCatalyst 9800-l-f Version-
   CiscoCatalyst 9800 Embedded Wireless Controller Version-
   CiscoCatalyst Ie3200 Version-
   CiscoCatalyst Ie3200 Rugged Switch Version-
   CiscoCatalyst Ie3300 Version-
   CiscoCatalyst Ie3300 Rugged Switch Version-
   CiscoCatalyst Ie3400 Version-
   CiscoCatalyst Ie3400 Heavy Duty Switch Version-
   CiscoCatalyst Ie3400 Rugged Switch Version-
   CiscoCatalyst Ie9300 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.27% 0.503
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
psirt@cisco.com 8.6 3.9 4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
CWE-248 Uncaught Exception

An exception is thrown from a function, but it is not caught.

CWE-755 Improper Handling of Exceptional Conditions

The product does not handle or incorrectly handles an exceptional condition.