CVE-2015-4244 describes a critical vulnerability in Cisco ASR 5000 and 5500 devices running software version 14.0, allowing local administrators to execute arbitrary Linux commands during the boot process by manipulating a Compact Flash file. With a CVSS score of 7.2 (High), this vulnerability has a low attack complexity and requires local access, but grants complete confidentiality, integrity, and availability impact. While no public exploits, Metasploit modules, or Nuclei templates are available, and there is minimal community discussion or media coverage, the vulnerability remains a significant risk for affected systems.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
14.0CPE matchmatch criteria | cpe:2.3:a:cisco:asr_5000_series_software:14.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.