NVD disclosure day

Published threat advisories for September 29, 2017

CVE advisoryKnown Exploit

CVE-2017-12240

Cisco IOS Software DHCP Relay Code Execution Vulnerability.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability in Cisco IOS and IOS XE Software's DHCP relay subsystem could allow an unauthenticated, remote attacker to execute arbitrary code, gain full system control, or cause a denial of service. This presents a risk of unauthorized access and operational disruption.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2017-12238

Cisco Catalyst Switches VPLS Denial-of-Service Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A memory management flaw in Cisco IOS Virtual Private LAN Service code affects Cisco Catalyst 6800 Series Switches. An adjacent attacker could cause a line card crash, leading to a denial of service. This impacts network availability for affected organizations.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2017-12237

Cisco IOS/IOS XE: Denial of Service via IKEv2 Packet Processing.

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

Cisco IOS and IOS XE software contain a denial of service vulnerability in the Internet Key Exchange Version 2 (IKEv2) module. This affects organizations using IKEv2 for VPNs, potentially causing device reloads or instability. The business risk includes disruption of network services and potential impacts on remote acc

• CISA KEV

CVE advisoryKnown Exploit

CVE-2017-12235

Cisco IOS PROFINET Denial of Service Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability in Cisco IOS software allows an unauthenticated attacker to cause a denial of service by triggering a device reload. This impacts organizations by disrupting operations, as affected Cisco devices configured for PROFINET communication may become unresponsive. The business risk is moderate due to potentia

• CISA KEV

CVE advisoryKnown Exploit

CVE-2017-12234

Cisco IOS Denial-of-Service Vulnerability in CIP Implementation

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability in Cisco IOS software allows remote attackers to cause a denial-of-service by sending specially crafted network packets. This could lead to device reloads and impact business operations. The Common Industrial Protocol (CIP) feature is affected.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2017-12233

Cisco IOS CIP Vulnerability Allows Denial of Service

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

Vulnerabilities in Cisco IOS software's Common Industrial Protocol (CIP) feature could permit remote attackers to cause device reloads, disrupting operations. Exploitation involves sending crafted network packets, leading to a denial of service. This impacts organizations using affected Cisco IOS devices that process C

• CISA KEV

CVE advisoryKnown Exploit

CVE-2017-12232

Cisco IOS Router Denial of Service Vulnerability.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

Cisco Integrated Services Routers Generation 2 devices running specific Cisco IOS versions are affected by a protocol vulnerability. An adjacent attacker could cause a device reload, leading to a denial of service. This impacts network availability and business operations.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2017-12231

Cisco IOS NAT Vulnerability Allows Denial of Service.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in Cisco IOS Network Address Translation (NAT) functionality could allow remote attackers to cause denial of service. This impacts organizations using specific NAT configurations for H.323 messages, potentially leading to service disruption.

• CISA KEV