CVE-2018-0094

Severity
7.5HIGH
EPSS
1.4%
top 19.51%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 18
Latest updateMay 13

Description

A vulnerability in IPv6 ingress packet processing for Cisco UCS Central Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition due to high CPU utilization on the targeted device. The vulnerability is due to insufficient rate limiting protection for IPv6 ingress traffic. An attacker could exploit this vulnerability by sending the affected device a high rate of IPv6 packets. Successful exploitation could allow the attacker to cause a DoS condition due

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

CVEListV5cisco_ucs_central_softwareCisco UCS Central Software

🔴Vulnerability Details

2
GHSA
GHSA-62jr-4pg7-4vr2: A vulnerability in IPv6 ingress packet processing for Cisco UCS Central Software could allow an unauthenticated, remote attacker to cause a denial of2022-05-13
CVEList
CVE-2018-0094: A vulnerability in IPv6 ingress packet processing for Cisco UCS Central Software could allow an unauthenticated, remote attacker to cause a denial of2018-01-18

📋Vendor Advisories

1
Cisco
Cisco UCS Central Software IPv6 Denial of Service Vulnerability2018-01-17
CVE-2018-0094 (HIGH CVSS 7.5) | A vulnerability in IPv6 ingress pac | cvebase.io