CVE-2015-0718 is a denial-of-service vulnerability affecting Cisco NX-OS on various Nexus and Unified Computing System (UCS) platforms. Remote attackers can exploit this flaw by sending specially crafted TCP packets to a device with an active TIME_WAIT TCP session, leading to a TCP stack reload. With a CVSS score of 7.5 (HIGH), this vulnerability is easily exploitable over the network without authentication, resulting in a complete loss of availability for the affected device. While no public exploit code or active exploitation has been confirmed, the vulnerability has garnered some community discussion and media coverage, indicating its potential impact.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.4_1iCPE matchmatch criteria | cpe:2.3:a:cisco:unified_computing_system:1.4_1i:*:*:*:*:*:*:* | ||
1.4_1jCPE matchmatch criteria | cpe:2.3:a:cisco:unified_computing_system:1.4_1j:*:*:*:*:*:*:* | ||
1.4_1mCPE matchmatch criteria | cpe:2.3:a:cisco:unified_computing_system:1.4_1m:*:*:*:*:*:*:* | ||
1.4_3iCPE matchmatch criteria | cpe:2.3:a:cisco:unified_computing_system:1.4_3i:*:*:*:*:*:*:* | ||
1.4_3lCPE matchmatch criteria | cpe:2.3:a:cisco:unified_computing_system:1.4_3l:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.