CVE-2014-3263Improper Input Validation in Cisco IOS

Severity
5.4MEDIUMNVD
EPSS
0.8%
top 26.38%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 16
Latest updateMay 17

Description

The ScanSafe module in Cisco IOS 15.3(3)M allows remote attackers to cause a denial of service (device reload) via HTTPS packets that require tower processing, aka Bug ID CSCum97038.

CVSS vector

AV:N/AC:H/C:N/I:N/A:CExploitability: 4.9 | Impact: 6.9

Affected Packages1 packages

NVDcisco/ios15.3\(3\)m, 15.3m+1

🔴Vulnerability Details

2
GHSA
GHSA-pxx5-vxcm-5v5q: The ScanSafe module in Cisco IOS 152022-05-17
CVEList
CVE-2014-3263: The ScanSafe module in Cisco IOS 152014-05-16

📋Vendor Advisories

1
Cisco
Cisco IOS Software ScanSafe Vulnerability2014-05-14

💬Community

1
Bugzilla
CVE-2014-9449 exiv2: buffer overflow in RiffVideo::infoTagsHandler2015-01-05
CVE-2014-3263 — Improper Input Validation in Cisco IOS | cvebase