CVE-2015-4201

Severity
5.0MEDIUM
EPSS
0.8%
top 26.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 20
Latest updateMay 17

Description

The Gateway General Packet Radio Service Support Node (GGSN) component on Cisco ASR 5000 devices with software 17.2.0.59184 and 18.0.L0.59219 allows remote attackers to cause a denial of service (Session Manager restart) via an invalid TCP/IP header, aka Bug ID CSCut68058.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDcisco/asr_5000_series_software17.2.0.59184, 18.0.l059219+1

🔴Vulnerability Details

2
GHSA
GHSA-g9cj-g4rw-3p5m: The Gateway General Packet Radio Service Support Node (GGSN) component on Cisco ASR 5000 devices with software 172022-05-17
CVEList
CVE-2015-4201: The Gateway General Packet Radio Service Support Node (GGSN) component on Cisco ASR 5000 devices with software 172015-06-20

💥Exploits & PoCs

1
Exploit-DB
Microsoft Windows - Win32k Elevation of Privilege2020-12-02

📋Vendor Advisories

1
Cisco
Cisco Gateway GPRS Support Node TCP Invalid Packet Vulnerability2015-06-19
CVE-2015-4201 (MEDIUM CVSS 5) | The Gateway General Packet Radio Se | cvebase.io