Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2020-3235


A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software on Catalyst 4500 Series Switches could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to insufficient input validation when the software processes specific SNMP object identifiers. An attacker could exploit this vulnerability by sending a crafted SNMP packet to an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition. Note: To exploit this vulnerability by using SNMPv2c or earlier, the attacker must know the SNMP read-only community string for an affected system. To exploit this vulnerability by using SNMPv3, the attacker must know the user credentials for the affected system.


Published

2020-06-03T18:15:21.463

Last Modified

2024-11-21T05:30:37.590

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.7 (HIGH)

CVSSv2 Vector

AV:N/AC:M/Au:S/C:N/I:N/A:C

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: SINGLE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: COMPLETE
Exploitability Score

6.8

Impact Score

6.9

Weaknesses
  • Type: Secondary
    CWE-118
  • Type: Primary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System cisco ios 12.2\(52\)sg Yes
Operating System cisco ios 12.2\(53\)sg1 Yes
Operating System cisco ios 12.2\(53\)sg2 Yes
Operating System cisco ios 12.2\(53\)sg3 Yes
Operating System cisco ios 12.2\(53\)sg4 Yes
Operating System cisco ios 12.2\(53\)sg5 Yes
Operating System cisco ios 12.2\(53\)sg6 Yes
Operating System cisco ios 12.2\(53\)sg7 Yes
Operating System cisco ios 12.2\(53\)sg8 Yes
Operating System cisco ios 12.2\(53\)sg9 Yes
Operating System cisco ios 12.2\(53\)sg10 Yes
Operating System cisco ios 12.2\(53\)sg11 Yes
Operating System cisco ios 12.2\(54\)sg Yes
Operating System cisco ios 12.2\(54\)sg1 Yes
Operating System cisco ios 12.2\(54\)wo Yes
Operating System cisco ios 15.0\(1\)ey Yes
Operating System cisco ios 15.0\(1\)ey2 Yes
Operating System cisco ios 15.0\(1\)xo Yes
Operating System cisco ios 15.0\(1\)xo1 Yes
Operating System cisco ios 15.0\(2\)ex2 Yes
Operating System cisco ios 15.0\(2\)ex8 Yes
Operating System cisco ios 15.0\(2\)sg Yes
Operating System cisco ios 15.0\(2\)sg1 Yes
Operating System cisco ios 15.0\(2\)sg2 Yes
Operating System cisco ios 15.0\(2\)sg3 Yes
Operating System cisco ios 15.0\(2\)sg4 Yes
Operating System cisco ios 15.0\(2\)sg5 Yes
Operating System cisco ios 15.0\(2\)sg6 Yes
Operating System cisco ios 15.0\(2\)sg7 Yes
Operating System cisco ios 15.0\(2\)sg8 Yes
Operating System cisco ios 15.0\(2\)sg9 Yes
Operating System cisco ios 15.0\(2\)sg10 Yes
Operating System cisco ios 15.0\(2\)sg11 Yes
Operating System cisco ios 15.0\(2\)xo Yes
Operating System cisco ios 15.1\(1\)sg Yes
Operating System cisco ios 15.1\(1\)sg1 Yes
Operating System cisco ios 15.1\(1\)sg2 Yes
Operating System cisco ios 15.1\(2\)sg Yes
Operating System cisco ios 15.1\(2\)sg1 Yes
Operating System cisco ios 15.1\(2\)sg2 Yes
Operating System cisco ios 15.1\(2\)sg3 Yes
Operating System cisco ios 15.1\(2\)sg4 Yes
Operating System cisco ios 15.1\(2\)sg5 Yes
Operating System cisco ios 15.1\(2\)sg6 Yes
Operating System cisco ios 15.1\(2\)sg7 Yes
Operating System cisco ios 15.1\(2\)sg8 Yes
Operating System cisco ios 15.2\(1\)e Yes
Operating System cisco ios 15.2\(1\)e1 Yes
Operating System cisco ios 15.2\(1\)e3 Yes
Operating System cisco ios 15.2\(2\)e Yes
Operating System cisco ios 15.2\(2\)e1 Yes
Operating System cisco ios 15.2\(2\)e2 Yes
Operating System cisco ios 15.2\(2\)e3 Yes
Operating System cisco ios 15.2\(2\)e4 Yes
Operating System cisco ios 15.2\(2\)e5 Yes
Operating System cisco ios 15.2\(2\)e5a Yes
Operating System cisco ios 15.2\(2\)e5b Yes
Operating System cisco ios 15.2\(2\)e6 Yes
Operating System cisco ios 15.2\(2\)e7 Yes
Operating System cisco ios 15.2\(2\)e7b Yes
Operating System cisco ios 15.2\(2\)e8 Yes
Operating System cisco ios 15.2\(2\)e9 Yes
Operating System cisco ios 15.2\(2\)e9a Yes
Operating System cisco ios 15.2\(2\)e10 Yes
Operating System cisco ios 15.2\(2b\)e Yes
Operating System cisco ios 15.2\(3\)e Yes
Operating System cisco ios 15.2\(3\)e1 Yes
Operating System cisco ios 15.2\(3\)e2 Yes
Operating System cisco ios 15.2\(3\)e3 Yes
Operating System cisco ios 15.2\(3\)e4 Yes
Operating System cisco ios 15.2\(3\)e5 Yes
Operating System cisco ios 15.2\(4\)e Yes
Operating System cisco ios 15.2\(4\)e1 Yes
Operating System cisco ios 15.2\(4\)e2 Yes
Operating System cisco ios 15.2\(4\)e3 Yes
Operating System cisco ios 15.2\(4\)e4 Yes
Operating System cisco ios 15.2\(4\)e5 Yes
Operating System cisco ios 15.2\(4\)e5a Yes
Operating System cisco ios 15.2\(4\)e6 Yes
Operating System cisco ios 15.2\(4\)e7 Yes
Operating System cisco ios 15.2\(4\)e8 Yes
Operating System cisco ios 15.3\(3\)jpj Yes
Operating System cisco ios_xe 3.2.0sg Yes
Operating System cisco ios_xe 3.2.1sg Yes
Operating System cisco ios_xe 3.2.2sg Yes
Operating System cisco ios_xe 3.2.3sg Yes
Operating System cisco ios_xe 3.2.4sg Yes
Operating System cisco ios_xe 3.2.5sg Yes
Operating System cisco ios_xe 3.2.6sg Yes
Operating System cisco ios_xe 3.2.7sg Yes
Operating System cisco ios_xe 3.2.8sg Yes
Operating System cisco ios_xe 3.2.9sg Yes
Operating System cisco ios_xe 3.2.10sg Yes
Operating System cisco ios_xe 3.2.11sg Yes
Operating System cisco ios_xe 3.3.0sg Yes
Operating System cisco ios_xe 3.3.0xo Yes
Operating System cisco ios_xe 3.3.1sg Yes
Operating System cisco ios_xe 3.3.1xo Yes
Operating System cisco ios_xe 3.3.2sg Yes
Operating System cisco ios_xe 3.3.2xo Yes
Operating System cisco ios_xe 3.4.0sg Yes
Operating System cisco ios_xe 3.4.1sg Yes
Operating System cisco ios_xe 3.4.2sg Yes
Operating System cisco ios_xe 3.4.3sg Yes
Operating System cisco ios_xe 3.4.4sg Yes
Operating System cisco ios_xe 3.4.5sg Yes
Operating System cisco ios_xe 3.4.6sg Yes
Operating System cisco ios_xe 3.4.7sg Yes
Operating System cisco ios_xe 3.4.8sg Yes
Operating System cisco ios_xe 3.5.0e Yes
Operating System cisco ios_xe 3.5.1e Yes
Operating System cisco ios_xe 3.5.2e Yes
Operating System cisco ios_xe 3.5.3e Yes
Operating System cisco ios_xe 3.6.0be Yes
Operating System cisco ios_xe 3.6.0e Yes
Operating System cisco ios_xe 3.6.1e Yes
Operating System cisco ios_xe 3.6.3e Yes
Operating System cisco ios_xe 3.6.4e Yes
Operating System cisco ios_xe 3.6.5ae Yes
Operating System cisco ios_xe 3.6.5be Yes
Operating System cisco ios_xe 3.6.5e Yes
Operating System cisco ios_xe 3.6.6e Yes
Operating System cisco ios_xe 3.6.7e Yes
Operating System cisco ios_xe 3.6.8e Yes
Operating System cisco ios_xe 3.6.9e Yes
Operating System cisco ios_xe 3.6.10e Yes
Operating System cisco ios_xe 3.7.0e Yes
Operating System cisco ios_xe 3.7.1e Yes
Operating System cisco ios_xe 3.7.2e Yes
Operating System cisco ios_xe 3.7.3e Yes
Operating System cisco ios_xe 3.8.0e Yes
Operating System cisco ios_xe 3.8.1e Yes
Operating System cisco ios_xe 3.8.2e Yes
Operating System cisco ios_xe 3.8.3e Yes
Operating System cisco ios_xe 3.8.4e Yes
Operating System cisco ios_xe 3.8.5ae Yes
Operating System cisco ios_xe 3.8.5e Yes
Operating System cisco ios_xe 3.8.6e Yes
Operating System cisco ios_xe 3.8.7e Yes
Operating System cisco ios_xe 3.8.8e Yes
Operating System cisco ios_xe 3.9.0e Yes
Operating System cisco ios_xe 3.9.1e Yes
Operating System cisco ios_xe 3.9.2be Yes
Operating System cisco ios_xe 3.9.2e Yes
Operating System cisco ios_xe 3.10.0ce Yes
Operating System cisco ios_xe 3.10.0e Yes
Operating System cisco ios_xe 3.10.1ae Yes
Operating System cisco ios_xe 3.10.1e Yes
Operating System cisco ios_xe 3.10.1se Yes
Operating System cisco ios_xe 3.10.2e Yes
Hardware cisco catalyst_4503-e * No
Hardware cisco catalyst_4506-e - No
Hardware cisco catalyst_4507r\+e - No
Hardware cisco catalyst_4510r\+e - No
Application oracle goldengate_management_pack 12.2.1.2.0 Yes

References