CVE-2013-3410

Severity
7.8HIGH
EPSS
0.4%
top 37.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 18
Latest updateMay 17

Description

Cisco Intrusion Prevention System (IPS) Software on IPS NME devices before 7.0(9)E4 allows remote attackers to cause a denial of service (device reload) via malformed IPv4 packets that trigger incorrect memory allocation, aka Bug ID CSCua61977.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

โ–ถNVDcisco/intrusion_prevention_system7.0\(8\)e4+9

๐Ÿ”ดVulnerability Details

2
GHSA
GHSA-496h-69gj-q856: Cisco Intrusion Prevention System (IPS) Software on IPS NME devices before 7โ†—2022-05-17
โ–ถ
CVEList
CVE-2013-3410: Cisco Intrusion Prevention System (IPS) Software on IPS NME devices before 7โ†—2013-07-18
โ–ถ

๐Ÿ’ฅExploits & PoCs

1
Exploit-DB
Photodex ProShow Gold/Producer 5.0.3310/6.0.3410 - 'ScsiAccess.exe' Local Privilege Escalationโ†—2013-03-22
โ–ถ

๐Ÿ“‹Vendor Advisories

1
Cisco
Multiple Vulnerabilities in Cisco Intrusion Prevention System Softwareโ†—2013-07-17
โ–ถ
CVE-2013-3410 (HIGH CVSS 7.8) | Cisco Intrusion Prevention System ( | cvebase.io