5
CVSSv2

CVE-2015-4202

Published: 20/06/2015 Updated: 28/12/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Cisco IOS 12.2SCH on uBR10000 router Cable Modem Termination Systems (CMTS) does not properly restrict access to the IP Detail Record (IPDR) service, which allows remote malicious users to obtain potentially sensitive MAC address and network-utilization information via crafted IPDR packets, aka Bug ID CSCua39203.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 12.2sch

cisco ios 12.2\\(33\\)sch

Vendor Advisories

A vulnerability in the processing of IP Detail Record (IPDR) packets on Cisco uBR10000 devices could allow an unauthenticated, remote attacker to gather a limited amount of IPDR data from the affected device The vulnerability is due to the inability of Cisco Cable Modem Termination Systems (CMTS) to define access control lists (ACLs) specific to ...