7.1
CVSSv2

CVE-2019-1760

Published: 28/03/2019 Updated: 09/10/2019
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

A vulnerability in Performance Routing Version 3 (PfRv3) of Cisco IOS XE Software could allow an unauthenticated, remote malicious user to cause the affected device to reload. The vulnerability is due to the processing of malformed smart probe packets. An attacker could exploit this vulnerability by sending specially crafted smart probe packets at the affected device. A successful exploit could allow the malicious user to reload the device, resulting in a denial of service (DoS) attack on an affected system.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xe 3.16.4as

cisco ios xe 3.16.4s

cisco ios xe 16.4.2

cisco ios xe 3.16.6bs

cisco ios xe 3.16.4gs

cisco ios xe 3.16.4ds

cisco ios xe 16.8.1a

cisco ios xe 16.5.2

cisco ios xe 16.5.1b

cisco ios xe 16.6.3

cisco ios xe 16.3.6

cisco ios xe 3.2.0ja

cisco ios xe 16.3.2

cisco ios xe 16.6.2

cisco ios xe 16.3.4

cisco ios xe 3.16.7bs

cisco ios xe 16.3.5

cisco ios xe 16.7.1

cisco ios xe 16.8.1c

cisco ios xe 3.16.7s

cisco ios xe 16.5.3

cisco ios xe 3.16.7as

cisco ios xe 16.4.3

cisco ios xe 3.16.5s

cisco ios xe 16.5.1

cisco ios xe 3.16.4bs

cisco ios xe 3.16.6s

cisco ios xe 3.16.4es

cisco ios xe 16.6.1

cisco ios xe 16.3.5b

cisco ios xe 16.7.1b

cisco ios xe 16.8.1s

cisco ios xe 16.8.1b

cisco ios xe 3.16.5as

cisco ios xe 16.7.1a

cisco ios xe 16.8.1

cisco ios xe 16.4.1

cisco ios xe 3.16.5bs

cisco ios xe 3.16.4cs

cisco ios xe 16.5.1a

cisco ios xe 16.3.3

Vendor Advisories

A vulnerability in Performance Routing Version 3 (PfRv3) of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the affected device to reload The vulnerability is due to the processing of malformed smart probe packets An attacker could exploit this vulnerability by sending specially crafted smart probe packets at the a ...