VDB
CVE-2004-0714
CVE-2004-0714
PUBLISHED
CVSS 5 MEDIUM
Cisco Internetwork Operating System (IOS) 12.0S through 12.3T attempts to process SNMP solicited operations on improper ports (UDP 162 and a randomly chosen UDP port), which allows remote attackers to cause a denial of service (device reload and memory corruption).
EPSS 2.55% · 83.5th percentile
Risk Scores
CVSS 2.0
5
EPSS Score
2.55%
83.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| cisco | ons_15454e_optical_transport_platform | |
| cisco | optical_networking_systems_software | 4.0.0, 4.1\(0\), 4.1\(2\) |
| n/a | n/a | n/a |
| cisco | ios | 12.1\(20\)ec, 12.1\(20\)ec1, 12.1\(20\)eo |
Timeline
- CVE Published
- Apr 20, 2004 PoC Published
- Jul 30, 2010 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
References
- 20040420 Vulnerabilities in SNMP Message Processing vendor-advisory
- VU#162451 third-party-advisory
- TA04-111B third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2004-0714 advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5845 url
- http://www.securityfocus.com/bid/10186 patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15921 technical