Vulnerabilities > Cisco > ASR 5000 Series Software > 19.0.m0.60828

DATE CVE VULNERABILITY TITLE RISK
2017-03-15 CVE-2017-3819 Missing Authentication for Critical Function vulnerability in Cisco ASR 5000 Series Software and Virtualized Packet Core
A privilege escalation vulnerability in the Secure Shell (SSH) subsystem in the StarOS operating system for Cisco ASR 5000 Series, ASR 5500 Series, ASR 5700 Series devices, and Cisco Virtualized Packet Core could allow an authenticated, remote attacker to gain unrestricted, root shell access.
network
low complexity
cisco CWE-306
critical
9.0
2015-08-22 CVE-2015-6256 Improper Input Validation vulnerability in Cisco ASR 5000 Series Software 19.0.M0.60828
Cisco ASR 5000 devices with software 19.0.M0.60828 allow remote attackers to cause a denial of service (OSPF process restart) via crafted length fields in headers of OSPF packets, aka Bug ID CSCuv62820.
network
low complexity
cisco CWE-20
5.0