peter bassill · operator
$ cve CVE-2018-0159 JSON

CVE-2018-0159 KEV

7.5
HIGH · CVSS 3.1 · EPSS 6.9% (pctl 94)

Patch first

On CISA KEV — known exploited in the wild, due 2022-03-17.

Description

A vulnerability in the implementation of Internet Key Exchange Version 1 (IKEv1) functionality in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to improper validation of specific IKEv1 packets. An attacker could exploit this vulnerability by sending crafted IKEv1 packets to an affected device during an IKE negotiation. A successful exploit could allow the attacker to cause an affected device to reload, resulting in a DoS condition. Cisco Bug IDs: CSCuj73916.

Scoring

CVSS7.5 (HIGH, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS6.87% — more likely to be exploited than 94% of all CVEs
WeaknessCWE-20
On CISA KEVyes — remediate by 2022-03-17
Public exploitnone known
Published2018-03-28
Last modified2026-06-17

CISA KEV

NameCisco IOS and XE Software Internet Key Exchange Version 1 Denial-of-Service Vulnerability
Added2022-03-03
Due2022-03-17
Vendor / productCisco / IOS Software and Cisco IOS XE Software
Ransomware usenone reported

Affected (14)

VendorProduct
ciscoasr 901-12c-f-d
ciscoasr 901-12c-ft-d
ciscoasr 901-4c-f-d
ciscoasr 901-4c-ft-d
ciscoasr 901-6cz-f-a
ciscoasr 901-6cz-f-d
ciscoasr 901-6cz-ft-a
ciscoasr 901-6cz-ft-d
ciscoios
ciscoios xe
ciscome 3600x-24cx-m
ciscome 3600x-24fs-m
ciscome 3600x-24ts-m
ciscome 3800x-24fs-m

References

→ the Explorer  ·  watch your stack  ·  NVD