7.1
CVSSv2

CVE-2018-0189

Published: 28/03/2018 Updated: 09/10/2019
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.3 | Impact Score: 3.6 | Exploitability Score: 1.6
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

A vulnerability in the Forwarding Information Base (FIB) code of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, network malicious user to cause a denial of service (DoS) condition. The vulnerability is due to a limitation in the way the FIB is internally representing recursive routes. An attacker could exploit this vulnerability by injecting routes into the routing protocol that have a specific recursive pattern. The attacker must be in a position on the network that provides the ability to inject a number of recursive routes with a specific pattern. An exploit could allow the malicious user to cause an affected device to reload, creating a DoS condition. Cisco Bug IDs: CSCva91655.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xe

Vendor Advisories

A vulnerability in the Forwarding Information Base (FIB) code of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, network attacker to cause a denial of service (DoS) condition The vulnerability is due to a limitation in the way the FIB is internally representing recursive routes An attacker could exploit this vulnerab ...