Cisco ASR 900是美国思科(Cisco)公司的一款900系列聚合服务路由器。Cisco IOS XE是一套为Cisco网络设备开发的操作系统。 Cisco ASR 900(Route Switch Processor 3 )中的Cisco IOS XE存在输入验证漏洞,该漏洞源于程序没有充分地验证输入的流量。当设备配置有OSPFv2路由和OSPF Message Digest 5 (MD5)加密认证时,攻击者可通过发送畸形的OSPFv2消息利用该漏洞重新加载iosd进程,造成拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco IOS XE Software | 3.13.6aS | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-1737 | Cisco IOS and IOS XE Software IP Service Level Agreement Denial of Service Vulnerability | |
| CVE-2019-1738 | Cisco IOS and IOS XE Software Network-Based Application Recognition Denial of Service Vuln | |
| CVE-2019-1739 | Cisco IOS and IOS XE Software Network-Based Application Recognition Denial of Service Vuln | |
| CVE-2019-1741 | Cisco IOS XE Software Encrypted Traffic Analytics Denial of Service Vulnerability | |
| CVE-2019-1740 | Cisco IOS and IOS XE Software Network-Based Application Recognition Denial of Service Vuln | |
| CVE-2019-1743 | Cisco IOS XE Software Arbitrary File Upload Vulnerability | |
| CVE-2019-1742 | Cisco IOS XE Software Information Disclosure Vulnerability | |
| CVE-2019-1745 | Cisco IOS XE Software Command Injection Vulnerability | |
| CVE-2019-1746 | Cisco IOS and IOS XE Software Cluster Management Protocol Denial of Service Vulnerability | |
| CVE-2019-1748 | Cisco IOS and IOS XE Software Network Plug-and-Play Agent Certificate Validation Vulnerabi | |
| CVE-2019-1747 | Cisco IOS and IOS XE Software Short Message Service Denial of Service Vulnerability | |
| CVE-2019-1750 | Cisco IOS XE Software Catalyst 4500 Cisco Discovery Protocol Denial of Service Vulnerabili |
No comments yet