Loading HuntDB...

Cisco IOS and IOS XE Software Smart Install Remote Code Execution Vulnerability

Added Nov. 3, 2021 Due May 3, 2022 CVE-2018-0171
Overdue Cisco / IOS and IOS XE CWE-20

Description

Cisco IOS and IOS XE Software improperly validates packet data, allowing an unauthenticated, remote attacker to trigger a reload of an affected device, cause a denial-of-service (DoS) condition, or perform code execution on the affected device.

Required Action

Apply updates per vendor instructions.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
4 months, 2 weeks ago