Executive brief
A vulnerability in the PROFINET Discovery and Configuration Protocol (PN-DCP) implementation of Cisco IOS allows unauthenticated remote attackers to cause a denial of service. The issue stems from improper parsing of crafted PN-DCP Identify Request packets, which triggers a device reload.
Affected products
- Cisco IOS 12.2 through 15.6
Timeline
- 2017-09-27: disclosed: Initial vendor advisory published by Cisco
- 2022-03-03: kev added: Added to CISA Known Exploited Vulnerabilities Catalog