Description
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem communication channel through the Cisco 550X Series Stackable Managed Switches could allow an authenticated, remote attacker to cause the device to reload unexpectedly, causing a denial of service (DoS) condition. The device nay need to be manually reloaded to recover. The vulnerability is due to lack of proper input throttling of ingress SNMP traffic over an internal interface. An attacker could exploit this vulnerability by sending a crafted, heavy stream of SNMP traffic to the targeted device. An exploit could allow the attacker to cause the device to reload unexpectedly, causing a DoS condition. Cisco Bug IDs: CSCvg22135.
Published: 2018-03-08
Score: 7.7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2018-1032 A vulnerability in the Simple Network Management Protocol (SNMP) subsystem communication channel through the Cisco 550X Series Stackable Managed Switches could allow an authenticated, remote attacker to cause the device to reload unexpectedly, causing a denial of service (DoS) condition. The device nay need to be manually reloaded to recover. The vulnerability is due to lack of proper input throttling of ingress SNMP traffic over an internal interface. An attacker could exploit this vulnerability by sending a crafted, heavy stream of SNMP traffic to the targeted device. An exploit could allow the attacker to cause the device to reload unexpectedly, causing a DoS condition. Cisco Bug IDs: CSCvg22135.
History

Mon, 02 Dec 2024 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Cisco Sf500-24 Sf500-24mp Sf500-24p Sf500-48 Sf500-48mp Sf500-48p Sg500-28 Sg500-28mpp Sg500-28p Sg500-52 Sg500-52mp Sg500-52p Sg500x-24 Sg500x-24mpp Sg500x-24p Sg500x-48 Sg500x-48mp Sg500x-48p Sg500xg-8f8t Small Business 500 Series Stackable Managed Switches Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-12-02T20:58:58.611Z

Reserved: 2017-11-27T00:00:00.000Z

Link: CVE-2018-0209

cve-icon Vulnrichment

Updated: 2024-08-05T03:14:17.001Z

cve-icon NVD

Status : Modified

Published: 2018-03-08T07:29:00.533

Modified: 2024-11-21T03:37:44.227

Link: CVE-2018-0209

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses