5
CVSSv2

CVE-2013-6701

Published: 18/12/2013 Updated: 15/09/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and previous versions does not properly prioritize health pings, which allows remote malicious users to cause a denial of service (watchdog timeout and TNC reset) via a flood of network traffic, aka Bug ID CSCud97155.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ons_15454_mstp

cisco ons_15454e_optical_transport_platform

cisco cisco_ons_15454_system_software 9.2.2

cisco cisco_ons_15454_system_software 9.4

cisco ons_15454_mspp

cisco cisco_ons_15454_system_software 9.0

cisco cisco_ons_15454_system_software 9.1

cisco cisco_ons_15454_system_software 9.2

cisco cisco_ons_15454_system_software 9.2.1

cisco cisco_ons_15454_system_software 9.3

cisco cisco_ons_15454_system_software 9.6

cisco ons_15454

cisco ons_15454_multiservice_transport_platform

cisco ons_15454_sonet_multiservice_provisioning_platform

cisco ons_15454_sdh_multiservice_provisioning_platform

Vendor Advisories

An issue in the tNetTaskLimit process of the Cisco ONS 15454 Transport Node Controller (TNC) could allow an unauthenticated, remote attacker to cause the TNC to reload due to a watchdog timeout The issue is due to a packet processing services process missing health pings due to excessive traffic sent to the TNC during stability security testing a ...