4.3
CVSSv2

CVE-2013-5548

Published: 01/11/2013 Updated: 21/11/2013
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The IKEv2 implementation in Cisco IOS, when AES-GCM or AES-GMAC is used, allows remote malicious users to bypass certain IPsec anti-replay features via IPsec tunnel traffic, aka Bug ID CSCuj47795.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios -

Vendor Advisories

A vulnerability in the implementation of the Cisco IOS Software Internet Key Exchange version 2 (IKEv2) protocol may cause the anti-replay capabilities of IPsec to be disabled This issue occurs only when using the Advanced Encryption Standard Galois/Counter Mode (AES-GCM) or the AES Galois Message Authentication Code (AES-GMAC) algorithms for Phas ...