Vulnerability Details CVE-2013-1166
Cisco IOS XE 3.2 through 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR), when VRF-aware NAT and SIP ALG are enabled, allows remote attackers to cause a denial of service (card reload) by sending many SIP packets, aka Bug ID CSCuc65609.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 61.4%
CVSS Severity
CVSS v2 Score 7.8
Products affected by CVE-2013-1166
-
cpe:2.3:h:cisco:asr_1001:-
-
cpe:2.3:h:cisco:asr_1002-x:-
-
cpe:2.3:h:cisco:asr_1002:-
-
cpe:2.3:h:cisco:asr_1002_fixed_router:-
-
cpe:2.3:h:cisco:asr_1004:-
-
cpe:2.3:h:cisco:asr_1006:-
-
cpe:2.3:h:cisco:asr_1023_router:-
-
cpe:2.3:o:cisco:ios_xe:3.2.0s
-
cpe:2.3:o:cisco:ios_xe:3.2.1s
-
cpe:2.3:o:cisco:ios_xe:3.2.2s
-
cpe:2.3:o:cisco:ios_xe:3.3.0s
-
cpe:2.3:o:cisco:ios_xe:3.3.1s
-
cpe:2.3:o:cisco:ios_xe:3.3.2s
-
cpe:2.3:o:cisco:ios_xe:3.4.0as
-
cpe:2.3:o:cisco:ios_xe:3.4.0s
-
cpe:2.3:o:cisco:ios_xe:3.4.1s
-
cpe:2.3:o:cisco:ios_xe:3.4.2s
-
cpe:2.3:o:cisco:ios_xe:3.4.3s
-
cpe:2.3:o:cisco:ios_xe:3.4.4s
-
cpe:2.3:o:cisco:ios_xe:3.7.0s