fkie_cve-2008-3818
Vulnerability from fkie_nvd
Published
2009-01-16 21:30
Modified
2025-04-09 00:30
Severity ?
Summary
Cisco ONS 15310-CL, 15310-MA, 15327, 15454, 15454 SDH, and 15600 with software 7.0.2 through 7.0.6, 7.2.2, 8.0.x, 8.5.1, and 8.5.2 allows remote attackers to cause a denial of service (control-card reset) via a crafted TCP session.
Impacted products
Vendor Product Version
cisco ons 7.0.2
cisco ons 7.0.4
cisco ons 7.0.5
cisco ons 7.2.0
cisco ons 7.2.2
cisco ons 8.0
cisco ons 8.5.0
cisco ons 8.5.1
cisco ons 8.5.2
cisco ons_15310-cl *
cisco ons_15310-ma *
cisco ons_15327 *
cisco ons_15454 *
cisco ons_15454sdh *
cisco ons_15600 *



{
  "configurations": [
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:cisco:ons:7.0.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "1A4A568B-304B-4523-9441-1179D372BA83",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:ons:7.0.4:*:*:*:*:*:*:*",
              "matchCriteriaId": "5DCC483E-B58E-403C-8080-FB0B0DCB777F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:ons:7.0.5:*:*:*:*:*:*:*",
              "matchCriteriaId": "37416556-05E2-48F8-ABED-038459B0FBA5",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:ons:7.2.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "6D2E8DD7-5086-4073-990B-5F5D92FAEF33",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:ons:7.2.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "1449B3C0-A485-4E8A-8337-64C1E85596E6",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:ons:8.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "682C2AF5-EB85-437B-A147-5CB92610A8C3",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:ons:8.5.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "49A99E5A-6190-458F-9191-5CEA774F121C",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:ons:8.5.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "3EE6182B-2A77-47B1-AB8A-8E12C2CD905E",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:ons:8.5.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "62992D9B-8D46-436A-B115-F7B687A24776",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:cisco:ons_15310-cl:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "67D1F3C9-85A5-44F9-8198-28FFDF87A3C0",
              "vulnerable": false
            },
            {
              "criteria": "cpe:2.3:h:cisco:ons_15310-ma:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "3769407E-D311-45DF-86D7-46098F5B6C36",
              "vulnerable": false
            },
            {
              "criteria": "cpe:2.3:h:cisco:ons_15327:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "6F98E52B-161E-41B7-BCFD-EA6E53FA23B4",
              "vulnerable": false
            },
            {
              "criteria": "cpe:2.3:h:cisco:ons_15454:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "054BA906-B607-4A65-A6E3-D3D7F8096235",
              "vulnerable": false
            },
            {
              "criteria": "cpe:2.3:h:cisco:ons_15454sdh:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "8FE53BD6-BE23-40A5-BE4E-62B3088EC8B8",
              "vulnerable": false
            },
            {
              "criteria": "cpe:2.3:h:cisco:ons_15600:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "811149AD-89DC-4D93-A598-F6318C9EA64B",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "cveTags": [],
  "descriptions": [
    {
      "lang": "en",
      "value": "Cisco ONS 15310-CL, 15310-MA, 15327, 15454, 15454 SDH, and 15600 with software 7.0.2 through 7.0.6, 7.2.2, 8.0.x, 8.5.1, and 8.5.2 allows remote attackers to cause a denial of service (control-card reset) via a crafted TCP session."
    },
    {
      "lang": "es",
      "value": "Cisco ONS 15310-CL, 15310-MA, 15327, 15454, 15454 SDH, y 15600 con software v7.0.2 hasta v7.0.6, v7.2.2, v8.0.x, v8.5.1, y v8.5.2 permite a atacantes remotos causar una denegaci\u00f3n de servicio (reinicio de tarjeta de control) mediante una sesi\u00f3n TCP manipulada."
    }
  ],
  "id": "CVE-2008-3818",
  "lastModified": "2025-04-09T00:30:58.490",
  "metrics": {
    "cvssMetricV2": [
      {
        "acInsufInfo": false,
        "baseSeverity": "HIGH",
        "cvssData": {
          "accessComplexity": "LOW",
          "accessVector": "NETWORK",
          "authentication": "NONE",
          "availabilityImpact": "COMPLETE",
          "baseScore": 7.8,
          "confidentialityImpact": "NONE",
          "integrityImpact": "NONE",
          "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:C",
          "version": "2.0"
        },
        "exploitabilityScore": 10.0,
        "impactScore": 6.9,
        "obtainAllPrivilege": false,
        "obtainOtherPrivilege": false,
        "obtainUserPrivilege": false,
        "source": "nvd@nist.gov",
        "type": "Primary",
        "userInteractionRequired": false
      }
    ]
  },
  "published": "2009-01-16T21:30:00.187",
  "references": [
    {
      "source": "psirt@cisco.com",
      "url": "http://securitytracker.com/id?1021592"
    },
    {
      "source": "psirt@cisco.com",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://www.cisco.com/en/US/products/products_security_advisory09186a0080a5c4fa.shtml"
    },
    {
      "source": "psirt@cisco.com",
      "url": "http://www.securityfocus.com/bid/33261"
    },
    {
      "source": "psirt@cisco.com",
      "url": "http://www.vupen.com/english/advisories/2009/0139"
    },
    {
      "source": "psirt@cisco.com",
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/47940"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://securitytracker.com/id?1021592"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://www.cisco.com/en/US/products/products_security_advisory09186a0080a5c4fa.shtml"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://www.securityfocus.com/bid/33261"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://www.vupen.com/english/advisories/2009/0139"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/47940"
    }
  ],
  "sourceIdentifier": "psirt@cisco.com",
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "description": [
        {
          "lang": "en",
          "value": "CWE-20"
        }
      ],
      "source": "nvd@nist.gov",
      "type": "Primary"
    }
  ]
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…