CVE-2014-3295

The HSRP implementation in Cisco NX-OS 6.2(2a) and earlier allows remote attackers to bypass authentication and cause a denial of service (group-member state modification and traffic blackholing) via malformed HSRP packets, aka Bug ID CSCup11309.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.8 UNKNOWN
ADJACENT_NETWORK
LOW
AV:A/AC:L/Au:N/C:N/I:P/A:P
ciscoCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 77%
VendorProductVersion
cisconx-os
𝑥
≤ 6.2\(2a\)
cisconx-os
4.1.\(2\)
cisconx-os
4.1.\(3\)
cisconx-os
4.1.\(4\)
cisconx-os
4.1.\(5\)
cisconx-os
4.2\(3\)
cisconx-os
4.2\(4\)
cisconx-os
4.2\(6\)
cisconx-os
4.2\(8\)
cisconx-os
4.2.\(2a\)
cisconx-os
5.0\(2a\)
cisconx-os
5.0\(3\)
cisconx-os
5.0\(5\)
cisconx-os
5.1\(1a\)
cisconx-os
5.1\(3\)
cisconx-os
5.1\(4\)
cisconx-os
5.1\(5\)
cisconx-os
5.1\(6\)
cisconx-os
5.2\(1\)
cisconx-os
5.2\(3a\)
cisconx-os
5.2\(4\)
cisconx-os
5.2\(5\)
cisconx-os
5.2\(7\)
cisconx-os
5.2\(9\)
cisconx-os
6.0\(1\)
cisconx-os
6.0\(2\)
cisconx-os
6.0\(3\)
cisconx-os
6.0\(4\)
cisconx-os
6.1\(1\)
cisconx-os
6.1\(2\)
cisconx-os
6.1\(3\)
cisconx-os
6.1\(4\)
cisconx-os
6.1\(4a\)
cisconx-os
6.2\(2\)
𝑥
= Vulnerable software versions