606
VMScore

CVE-2022-20697

Published: 15/04/2022 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.9 | Exploitability Score: 8
CVSS v3 Base Score: 8.6 | Impact Score: 4 | Exploitability Score: 3.9
VMScore: 606
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C

Vulnerability Summary

A vulnerability in the web services interface of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote malicious user to cause a denial of service (DoS) condition. This vulnerability is due to improper resource management in the HTTP server code. An attacker could exploit this vulnerability by sending a large number of HTTP requests to an affected device. A successful exploit could allow the malicious user to cause the device to reload, resulting in a DoS condition.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xe 3.11.3e

cisco ios 15.1\\(3\\)svs

cisco ios 15.1\\(3\\)svr1

cisco ios xe 3.11.3ae

cisco ios 15.9\\(3\\)m2a

cisco ios 15.1\\(3\\)svr2

cisco ios 15.1\\(3\\)svr3

cisco ios 15.1\\(3\\)svs1

cisco ios 15.9\\(3\\)m2

cisco ios 15.2\\(7\\)e3

cisco ios 15.2\\(7\\)e3k

cisco ios 15.1\\(3\\)svt1

cisco ios 15.9\\(3\\)m3

cisco ios 15.1\\(3\\)svu1

cisco ios 15.2\\(8\\)e

cisco ios 15.1\\(3\\)svt2

cisco ios 15.9\\(3\\)m3b

cisco ios xe 3.11.4e

cisco ios 15.9\\(3\\)m3a

cisco ios 15.2\\(7\\)e4

cisco ios 15.2\\(234k\\)e

cisco ios 15.3\\(3\\)jk100

cisco ios 15.2\\(7\\)e3a

cisco ios 15.1\\(3\\)svu10

cisco ios 15.9\\(3\\)m4

cisco ios 15.3\\(3\\)jpj8

cisco ios 15.1\\(3\\)svv1

cisco ios 15.1\\(3\\)svt3

cisco ios 15.1\\(3\\)svu2

Vendor Advisories

A vulnerability in the web services interface of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition This vulnerability is due to improper resource management in the HTTP server code An attacker could exploit this vulnerability by sending a large number of HTTP r ...