CVE-2019-1644
Cisco IoT Field Network Director Resource Exhaustion Denial of Service Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability in the UDP protocol implementation for Cisco IoT Field Network Director (IoT-FND) could allow an unauthenticated, remote attacker to exhaust system resources, resulting in a denial of service (DoS) condition. The vulnerability is due to improper resource management for UDP ingress packets. An attacker could exploit this vulnerability by sending a high rate of UDP packets to an affected system within a short period of time. A successful exploit could allow the attacker to exhaust available system resources, resulting in a DoS condition.
Una vulnerabilidad en la implementación del protocolo UDP para Cisco IoT Field Network Director (IoT-FND) podría permitir que un atacante remoto no autenticado agote los recursos del sistema, lo que resulta en una condición de denegación de servicio (DoS). La vulnerabilidad se debe a la gestión incorrecta de recursos para los paquetes de entrada UDP. Un atacante podría explotar esta vulnerabilidad enviando una gran tasa de paquetes UDP a un sistema afectado en poco tiempo. Si se explota con éxito, podría permitir que el atacante agote los recursos del sistema disponibles, provocando una denegación de servicio (DoS).
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2018-12-06 CVE Reserved
- 2019-01-23 CVE Published
- 2024-06-15 EPSS Updated
- 2024-11-19 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-400: Uncontrolled Resource Consumption
- CWE-770: Allocation of Resources Without Limits or Throttling
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/106709 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Iot Field Network Director Search vendor "Cisco" for product "Iot Field Network Director" | 4.3\(0.20\) Search vendor "Cisco" for product "Iot Field Network Director" and version "4.3\(0.20\)" | - |
Affected
|