6.4
CVSSv2

CVE-2012-5032

Published: 23/04/2014 Updated: 23/04/2014
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

The Flex-VPN load-balancing feature in the ipsec-ikev2 implementation in Cisco IOS prior to 15.1(1)SY3 does not require authentication, which allows remote malicious users to trigger the forwarding of VPN traffic to an attacker-controlled destination, or the discarding of this traffic, by arranging for an arbitrary device to become a cluster member, aka Bug ID CSCub93641.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios

cisco ios 15.1\\(1\\)sy

cisco ios 15.1\\(1\\)sy1

cisco ios 15.1