5
CVSSv2

CVE-2014-0685

Published: 07/05/2014 Updated: 07/05/2014
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Cisco Nexus 1000V InterCloud 5.2(1)IC1(1.2) and previous versions for VMware allows remote malicious users to bypass ACL deny statements via crafted (1) IGMPv2 or (2) IGMPv3 packets, aka Bug ID CSCug61691.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco cisco nexus 1000v intercloud

Vendor Advisories

A vulnerability in Cisco Nexus 1000V switches could allow an unauthenticated, remote attacker to bypass deny statements in access control lists (ACLs) with certain types of Internet Group Management Protocol version 2 (IGMPv2) or IGMP version 3 (IGMPv3) traffic IGMP version 1 (IGMPv1) is not affected The vulnerability is due to a lack of IGMPv2 ...