// For flags

CVE-2018-0209

 

Severity Score

7.7
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem communication channel through the Cisco 550X Series Stackable Managed Switches could allow an authenticated, remote attacker to cause the device to reload unexpectedly, causing a denial of service (DoS) condition. The device nay need to be manually reloaded to recover. The vulnerability is due to lack of proper input throttling of ingress SNMP traffic over an internal interface. An attacker could exploit this vulnerability by sending a crafted, heavy stream of SNMP traffic to the targeted device. An exploit could allow the attacker to cause the device to reload unexpectedly, causing a DoS condition. Cisco Bug IDs: CSCvg22135.

Una vulnerabilidad en el canal de comunicación de susbsistemas SNMP (Simple Network Management Protocol) mediante Cisco 550X Series Stackable Managed Switches podría permitir que un atacante remoto autenticado haga que se reinicie el dispositivo de manera inesperada, provocando una condición de denegación de servicio (DoS). El dispositivo podría necesitar volver a cargarse manualmente para que se recupere. La vulnerabilidad se debe a una falta de un control adecuado del tráfico SNMP de entrada en la interfaz interna. Un atacante podría explotar esta vulnerabilidad enviando un gran tráfico SNMP manipulado al dispositivo objetivo. Si se explota con éxito, podría permitir que el atacante consiga que el dispositivo afectado se reinicie de manera inesperada, provocando una denegación de servicio (DoS). Cisco Bug IDs: CSCvg22135.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Changed
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
None
Integrity
None
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2017-11-27 CVE Reserved
  • 2018-03-08 CVE Published
  • 2024-01-16 EPSS Updated
  • 2024-08-05 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-24
Search vendor "Cisco" for product "Sf500-24"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-24mp
Search vendor "Cisco" for product "Sf500-24mp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-24p
Search vendor "Cisco" for product "Sf500-24p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-48
Search vendor "Cisco" for product "Sf500-48"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-48mp
Search vendor "Cisco" for product "Sf500-48mp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-48p
Search vendor "Cisco" for product "Sf500-48p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-28
Search vendor "Cisco" for product "Sg500-28"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-28mpp
Search vendor "Cisco" for product "Sg500-28mpp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-28p
Search vendor "Cisco" for product "Sg500-28p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-52
Search vendor "Cisco" for product "Sg500-52"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-52mp
Search vendor "Cisco" for product "Sg500-52mp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-52p
Search vendor "Cisco" for product "Sg500-52p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-24
Search vendor "Cisco" for product "Sg500x-24"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-24mpp
Search vendor "Cisco" for product "Sg500x-24mpp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-24p
Search vendor "Cisco" for product "Sg500x-24p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-48
Search vendor "Cisco" for product "Sg500x-48"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-48mp
Search vendor "Cisco" for product "Sg500x-48mp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-48p
Search vendor "Cisco" for product "Sg500x-48p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.2.5.68
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.2.5.68"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500xg-8f8t
Search vendor "Cisco" for product "Sg500xg-8f8t"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-24
Search vendor "Cisco" for product "Sf500-24"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-24mp
Search vendor "Cisco" for product "Sf500-24mp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-24p
Search vendor "Cisco" for product "Sf500-24p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-48
Search vendor "Cisco" for product "Sf500-48"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-48mp
Search vendor "Cisco" for product "Sf500-48mp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sf500-48p
Search vendor "Cisco" for product "Sf500-48p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-28
Search vendor "Cisco" for product "Sg500-28"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-28mpp
Search vendor "Cisco" for product "Sg500-28mpp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-28p
Search vendor "Cisco" for product "Sg500-28p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-52
Search vendor "Cisco" for product "Sg500-52"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-52mp
Search vendor "Cisco" for product "Sg500-52mp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500-52p
Search vendor "Cisco" for product "Sg500-52p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-24
Search vendor "Cisco" for product "Sg500x-24"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-24mpp
Search vendor "Cisco" for product "Sg500x-24mpp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-24p
Search vendor "Cisco" for product "Sg500x-24p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-48
Search vendor "Cisco" for product "Sg500x-48"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-48mp
Search vendor "Cisco" for product "Sg500x-48mp"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500x-48p
Search vendor "Cisco" for product "Sg500x-48p"
--
Safe
Cisco
Search vendor "Cisco"
Small Business 500 Series Stackable Managed Switches Firmware
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware"
2.3.0.130
Search vendor "Cisco" for product "Small Business 500 Series Stackable Managed Switches Firmware" and version "2.3.0.130"
-
Affected
in Cisco
Search vendor "Cisco"
Sg500xg-8f8t
Search vendor "Cisco" for product "Sg500xg-8f8t"
--
Safe