← Back

CVE-2024-20436

nvd nist
Published: Sep 25, 2024Modified: Oct 8, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

A vulnerability in the HTTP Server feature of Cisco IOS XE Software when the Telephony Service feature is enabled could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to a null pointer dereference when accessing specific URLs. An attacker could exploit this vulnerability by sending crafted HTTP traffic to an affected device. A successful exploit could allow the attacker to cause the affected device to reload, causing a DoS condition on the affected device.

Affected (201)

Products: Cisco: Ios Xe
1 product
Ios Xe
Configuration A
201 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 16.10.1
Version 16.10.1a
Version 16.10.1b
Version 16.10.1e
Version 16.10.1s
Version 16.10.2
Version 16.10.3
Version 16.11.1
Version 16.11.1a
Version 16.11.1b
Version 16.11.1s
Version 16.11.2
Version 16.12.1
Version 16.12.1a
Version 16.12.1c
Version 16.12.1s
Version 16.12.2
Version 16.12.2s
Version 16.12.3
Version 16.12.3s
Version 16.12.4
Version 16.12.4a
Version 16.12.5
Version 16.12.6
Version 16.12.7
Version 16.12.8
Version 16.2.1
Version 16.2.2
Version 16.3.10
Version 16.3.11
Version 16.3.1
Version 16.3.1a
Version 16.3.2
Version 16.3.3
Version 16.3.4
Version 16.3.5
Version 16.3.6
Version 16.3.7
Version 16.3.8
Version 16.3.9
Version 16.4.1
Version 16.4.2
Version 16.4.3
Version 16.5.1
Version 16.5.1b
Version 16.5.2
Version 16.5.3
Version 16.6.10
Version 16.6.1
Version 16.6.2
Version 16.6.3
Version 16.6.4
Version 16.6.5
Version 16.6.6
Version 16.6.7
Version 16.6.8
Version 16.6.9
Version 16.7.1
Version 16.7.2
Version 16.7.3
Version 16.8.1
Version 16.8.1s
Version 16.8.2
Version 16.8.3
Version 16.9.1
Version 16.9.1s
Version 16.9.2
Version 16.9.3
Version 16.9.4
Version 16.9.5
Version 16.9.6
Version 16.9.7
Version 16.9.8
Version 17.1.1
Version 17.1.1s
Version 17.1.1t
Version 17.1.3
Version 17.10.1
Version 17.10.1a
Version 17.10.1b
Version 17.11.1
Version 17.11.1a
Version 17.12.1
Version 17.12.1a
Version 17.2.1
Version 17.2.1r
Version 17.2.1v
Version 17.2.2
Version 17.2.3
Version 17.3.1
Version 17.3.1a
Version 17.3.2
Version 17.3.3
Version 17.3.4
Version 17.3.4a
Version 17.3.5
Version 17.3.6
Version 17.3.7
Version 17.3.8
Version 17.3.8a
Version 17.4.1
Version 17.4.1a
Version 17.4.1b
Version 17.4.2
Version 17.5.1
Version 17.5.1a
Version 17.6.1
Version 17.6.1a
Version 17.6.2
Version 17.6.3
Version 17.6.3a
Version 17.6.4
Version 17.6.5
Version 17.6.5a
Version 17.6.6
Version 17.6.6a
Version 17.7.1
Version 17.7.1a
Version 17.7.2
Version 17.8.1
Version 17.8.1a
Version 17.9.1
Version 17.9.1a
Version 17.9.2
Version 17.9.2a
Version 17.9.3
Version 17.9.3a
Version 17.9.4
Version 17.9.4a
Version 3.10.0s
Version 3.10.10s
Version 3.10.1s
Version 3.10.2s
Version 3.10.2ts
Version 3.10.3s
Version 3.10.4s
Version 3.10.5s
Version 3.10.6s
Version 3.10.7s
Version 3.10.8as
Version 3.10.8s
Version 3.10.9s
Version 3.11.0s
Version 3.11.1s
Version 3.11.2s
Version 3.11.3s
Version 3.11.4s
Version 3.12.0s
Version 3.12.1s
Version 3.12.2s
Version 3.12.3s
Version 3.12.4s
Version 3.13.0s
Version 3.13.10s
Version 3.13.1s
Version 3.13.2s
Version 3.13.3s
Version 3.13.4s
Version 3.13.5s
Version 3.13.6as
Version 3.13.6s
Version 3.13.7s
Version 3.13.8s
Version 3.13.9s
Version 3.14.0s
Version 3.14.1s
Version 3.14.2s
Version 3.14.3s
Version 3.14.4s
Version 3.15.0s
Version 3.15.1cs
Version 3.15.1s
Version 3.15.2s
Version 3.15.3s
Version 3.15.4s
Version 3.16.0cs
Version 3.16.0s
Version 3.16.10s
Version 3.16.1as
Version 3.16.2s
Version 3.16.3s
Version 3.16.4as
Version 3.16.4bs
Version 3.16.4ds
Version 3.16.5s
Version 3.16.6bs
Version 3.16.6s
Version 3.16.7as
Version 3.16.7bs
Version 3.16.7s
Version 3.16.8s
Version 3.16.9s
Version 3.17.0s
Version 3.17.1s
Version 3.17.2s
Version 3.17.3s
Version 3.17.4s
Version 3.18.2asp
Version 3.9.0as
Version 3.9.1s
Version 3.9.2s

Timeline

No history available yet.