CVE-2015-0669Improper Input Validation in Cisco IOS

Severity
6.4MEDIUMNVD
EPSS
0.5%
top 35.86%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 21
Latest updateMay 17

Description

The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 15.4S and 15.4(3)S allows remote attackers to modify configuration settings or cause a denial of service (partial service outage) by sending crafted Autonomic Networking (AN) messages on an intranet network, aka Bug ID CSCup62167.

CVSS vector

AV:N/AC:L/C:N/I:P/A:PExploitability: 10.0 | Impact: 4.9

Affected Packages1 packages

NVDcisco/ios15.4\(3\)s, 15.4s+1

🔴Vulnerability Details

2
GHSA
GHSA-wc6h-7fpv-2vw4: The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 152022-05-17
CVEList
CVE-2015-0669: The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 152015-03-21

📋Vendor Advisories

1
Cisco
Cisco IOS Software Autonomic Networking Infrastructure Overwrite Vulnerability2015-03-19
CVE-2015-0669 — Improper Input Validation in Cisco IOS | cvebase