VDB
CVE-2024-20318
CVE-2024-20318
PUBLISHED
Es besteht eine Schwachstelle in Cisco IOS XR. Dieser Fehler besteht in den Layer-2-Ethernet-Diensten aufgrund der falschen Behandlung bestimmter Ethernet-Frames. Ein benachbarter, anonymer Angreifer kann diese Schwachstelle ausnutzen, um einen Denial-of-Service-Zustand zu verursachen.
EPSS 0.05% · 16.8th percentile
Risk Scores
EPSS Score
0.05%
16.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Cisco IOS XR <7.9.2 | |
| Cisco | Cisco IOS XR <7.10.1 |
Exploit Intelligence
- CIRCL seen: CVE-2024-20318 (circl-sighting)
- CIRCL seen: CVE-2024-20318 (circl-sighting)
- CIRCL seen: CVE-2024-20318 (circl-sighting)
- cisco-sa-xrl2vpn-jesrU3fc (circl)
Timeline
- Mar 13, 2024 CVE Published
- Mar 13, 2024 PoC Published
- Mar 13, 2024 PoC Published
- Mar 14, 2024 EPSS Score
- Mar 15, 2024 PoC Published
- Apr 9, 2024 EPSS Score
- May 5, 2024 EPSS Score
- May 31, 2024 EPSS Score
- Jun 26, 2024 EPSS Score
- Jul 22, 2024 EPSS Score
- Aug 17, 2024 EPSS Score
- Sep 12, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-0631.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-0631 advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-acl-bypass-RZU5NL3e advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-dhcp-dos-3tgPKRdm advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-pppma-JKWFgneW advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-scp-dos-kb6sUUHw advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-ssh-privesc-eWDMKew3 advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-snmp-uhv6ZDeF advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-xrl2vpn-jesrU3fc advisory