CVE-2013-1166
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
11/04/2013
Last modified:
11/04/2025
Description
Cisco IOS XE 3.2 through 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR), when VRF-aware NAT and SIP ALG are enabled, allows remote attackers to cause a denial of service (card reload) by sending many SIP packets, aka Bug ID CSCuc65609.
Impact
Base Score 2.0
7.80
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:h:cisco:asr_1001:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:cisco:asr_1002:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:cisco:asr_1002-x:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:cisco:asr_1002_fixed_router:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:cisco:asr_1004:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:cisco:asr_1006:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:cisco:asr_1023_router:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios_xe:3.2.0s:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios_xe:3.2.1s:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios_xe:3.2.2s:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios_xe:3.3.0s:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios_xe:3.3.1s:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios_xe:3.3.2s:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios_xe:3.4.0as:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios_xe:3.4.0s:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page