CVE-2018-0179 describes multiple vulnerabilities within the Login Enhancements (Login Block) feature of specific Cisco IOS Software releases (15.4(2)T, 15.4(3)M, 15.4(2)CG and later). An unauthenticated, remote attacker can exploit these flaws to trigger a system reload, leading to a denial of service (DoS) condition. With a CVSS score of 5.9 (Medium), this vulnerability has a network attack vector and high impact on availability, though attack complexity is high. Notably, this CVE is listed in the KEV catalog, indicating active exploitation, and has garnered significant community discussion despite a lack of public exploit code or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
15.3\(00.00.19\)syCPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.3\(00.00.19\)sy:*:*:*:*:*:*:* | ||
15.4\(01\)ia001.100CPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.4\(01\)ia001.100:*:*:*:*:*:*:* | ||
15.6\(01.22\)tCPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.6\(01.22\)t:*:*:*:*:*:*:* | ||
15.4\(03\)m4.1CPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.4\(03\)m4.1:*:*:*:*:*:*:* | ||
15.4\(2\)cgCPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.4\(2\)cg:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.