← Back

CVE-2015-0681

nvd nist
Published: Jul 24, 2015Modified: May 6, 2026

JSON object

Loading...
7.1
Vector
AV:N/AC:M/Au:N/C:N/I:N/A:C
Exploitability: 8.6 / Impact: 6.9
Source: NVD

Description

The TFTP server in Cisco IOS 12.2(44)SQ1, 12.2(33)XN1, 12.4(25e)JAM1, 12.4(25e)JAO5m, 12.4(23)JY, 15.0(2)ED1, 15.0(2)EY3, 15.1(3)SVF4a, and 15.2(2)JB1 and IOS XE 2.5.x, 2.6.x, 3.1.xS, 3.2.xS, 3.3.xS, 3.4.xS, and 3.5.xS before 3.6.0S; 3.1.xSG, 3.2.xSG, and 3.3.xSG before 3.4.0SG; 3.2.xSE before 3.3.0SE; 3.2.xXO before 3.3.0XO; 3.2.xSQ; 3.3.xSQ; and 3.4.xSQ allows remote attackers to cause a denial of service (device hang or reload) via multiple requests that trigger improper memory management, aka Bug ID CSCts66733.

Affected (62)

Products: Cisco: Ios, Ios Xe
2 products
Ios
Ios Xe
Configuration A
62 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 12.2(33)xn1
Version 12.2(44)sq1
Version 12.4(23)jy
Version 12.4(25e)jam1
Version 12.4(25e)jao5m
Version 15.0(2)ed1
Version 15.0(2)ey3
Version 15.1(3)svf4a
Version 15.2(2)jb1
Cisco
Version 2.5.0
Version 2.5.1
Version 2.5.2
Version 2.6.0
Version 2.6.1
Version 2.6.2
Version 3.1s.0
Version 3.1s.1
Version 3.1s.2
Version 3.1s.3
Version 3.1s.4
Version 3.1s.5
Version 3.1s.6
Version 3.1sg.0
Version 3.1sg.1
Version 3.2s.0
Version 3.2s.1
Version 3.2s.2
Version 3.2s.3
Version 3.2se.0
Version 3.2se.1
Version 3.2se.2
Version 3.2se.3
Version 3.2sg.0
Version 3.2sg.1
Version 3.2sg.2
Version 3.2sg.3
Version 3.2sg.4
Version 3.2sg.5
Version 3.2sg.6
Version 3.2sg.7
Version 3.2sg.8
Version 3.2sg.9
Version 3.2xo.0
Version 3.2xo.1
Version 3.3sg.0
Version 3.3sg.1
Version 3.3sg.2
Version 3.3sq.0
Version 3.3sq.1
Version 3.4s.0
Version 3.4s.1
Version 3.4s.2
Version 3.4s.3
Version 3.4s.4
Version 3.4s.5
Version 3.4s.6
Version 3.4sq.0
Version 3.4sq.1
Version 3.5s.0
Version 3.5s.1
Version 3.5s.2
Version 3.5s_base

Related CWEs

Timeline

No history available yet.