CVE-2013-5545
Published Oct 31, 2013
Last updated 3 years ago
Overview
- Description
- The PPTP ALG implementation in Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) by sending many PPTP packets over NAT, aka Bug ID CSCuh19936.
- Source
- ykramarz@cisco.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 6.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:C
Weaknesses
- nvd@nist.gov
- CWE-20
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:cisco:ios_xe:3.9.0s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "94227B25-5C86-453C-9DC8-A8201C1D1FEE" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:3.9.1s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10F278DC-5102-4A18-9C72-E8FEEDCC5729" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:cisco:asr_1001:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ED7C321E-F083-4AB6-96A0-D6358980441E" }, { "criteria": "cpe:2.3:h:cisco:asr_1002:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E4376E56-A21C-4642-A85D-439C8E21CD7F" }, { "criteria": "cpe:2.3:h:cisco:asr_1002-x:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "444F688F-79D0-4F22-B530-7BD520080B8F" }, { "criteria": "cpe:2.3:h:cisco:asr_1004:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55DD2272-10C2-43B9-9F13-6DC41DBE179B" }, { "criteria": "cpe:2.3:h:cisco:asr_1006:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7428E0A8-1641-47FB-9CA9-34311DEF660D" }, { "criteria": "cpe:2.3:h:cisco:asr_1023_router:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "399C03D1-C4B2-4DE6-9772-EC0BD88D7FCF" } ], "operator": "OR" } ], "operator": "AND" } ]