TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2018-0167

HIGHCISA KEV
8.8

Beschreibung

Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. Cisco Bug IDs: CSCuo17183, CSCvd73487.

CVE Details

CVSS v3.1 Bewertung8.8
SchweregradHIGH
CVSS VektorCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorADJACENT_NETWORK
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht3/28/2018
Zuletzt geandert1/14/2026
Quellekev
Honeypot-Sichtungen0

CISA KEV

HerstellerCisco
ProduktIOS, XR, and XE Software
SchwachstellennameCisco IOS, XR, and XE Software Buffer Overflow Vulnerability
KEV Aufnahmedatum2022-03-03
Behebungsfrist2022-03-17
Ransomware-NutzungUnknown

Betroffene Produkte

cisco:asr_9001cisco:asr_9006cisco:asr_9010cisco:asr_9904cisco:asr_9906cisco:asr_9910cisco:asr_9912cisco:asr_9922cisco:ioscisco:ios_xecisco:ios_xrrockwellautomation:allen-bradley_armorstratix_5700rockwellautomation:allen-bradley_stratix_5400rockwellautomation:allen-bradley_stratix_5410rockwellautomation:allen-bradley_stratix_5700rockwellautomation:allen-bradley_stratix_5900rockwellautomation:allen-bradley_stratix_8000rockwellautomation:allen-bradley_stratix_8300

Schwachen (CWE)

CWE-119CWE-119

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.