Cisco Network Registrar 7.1 DHCPv6 DoS (CSCuo07437)

medium Nessus Plugin ID 73755

Synopsis

The remote host is affected by a denial of service vulnerability.

Description

The remote host is running a version of Cisco Network Registrar (CNR) 7.1. It is, therefore, affected by a denial of service vulnerability due to a flaw in the DHCPv6 server module. An attacker could potentially exploit this vulnerability to cause the DHCPv6 server to reboot.

Solution

Contact normal Cisco support channels to upgrade to a version that includes a fix for this vulnerability.

See Also

http://www.nessus.org/u?ac1213e4

https://tools.cisco.com/bugsearch/bug/CSCuo07437

Plugin Details

Severity: Medium

ID: 73755

File Name: cisco-sn-20142155-cnr.nasl

Version: 1.3

Type: remote

Family: CISCO

Published: 4/29/2014

Updated: 11/15/2018

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 2.7

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: cpe:/a:cisco:cns_network_registrar

Required KB Items: www/cnr

Exploit Ease: No known exploits are available

Patch Publication Date: 4/17/2014

Vulnerability Publication Date: 4/17/2014

Reference Information

CVE: CVE-2014-2155

BID: 66975

CISCO-BUG-ID: CSCuo07437