Vulnerabilities > CVE-2018-0282 - Unspecified vulnerability in Cisco IOS and IOS XE

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
high complexity
cisco
nessus

Summary

A vulnerability in the TCP socket code of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to a state condition between the socket state and the transmission control block (TCB) state. While this vulnerability potentially affects all TCP applications, the only affected application observed so far is the HTTP server. An attacker could exploit this vulnerability by sending specific HTTP requests at a sustained rate to a reachable IP address of the affected software. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition on an affected device.

Vulnerable Configurations

Part Description Count
OS
Cisco
2
Hardware
Cisco
147

Nessus

NASL familyCISCO
NASL idCISCO-SA-20190109-TCP.NASL
descriptionAccording to its self-reported version, Cisco IOS XE Software is affected by following vulnerability - A vulnerability in the TCP socket code of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to a state condition between the socket state and the transmission control block (TCB) state. While this vulnerability potentially affects all TCP applications, the only affected application observed so far is the HTTP server. An attacker could exploit this vulnerability by sending specific HTTP requests at a sustained rate to a reachable IP address of the affected software. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition on an affected device. (CVE-2018-0282) Please see the included Cisco BIDs and Cisco Security Advisory for more information
last seen2020-05-09
modified2019-04-05
plugin id123789
published2019-04-05
reporterThis script is Copyright (C) 2019-2020 and is owned by Tenable, Inc. or an Affiliate thereof.
sourcehttps://www.tenable.com/plugins/nessus/123789
titleCisco IOS XE Software TCP Denial of Service Vulnerability