Junglewise Threat Intelligence

CVE-2018-0179: Cisco IOS Software Denial-of-Service Vulnerability

CVE-2018-0179 · Severity: critical · CVSS 5.9 · Exploited in the wild · Published 2022-03-03

Technologies: Cisco IOS, Cisco Ios Software, Cisco IOS XE. Vendors: Cisco.

Executive brief

A vulnerability in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attacker to trigger a reload of an affected system. This results in a denial of service (DoS) condition on devices running specific versions of Cisco IOS.

Affected products

  • Cisco IOS Software 15.4(2)T, 15.4(3)M, 15.4(2)CG and later

Timeline

  • 2018-03-28: disclosed: Cisco Security Advisory published
  • 2022-03-03: kev added: Added to CISA Known Exploited Vulnerabilities Catalog

Related threats