CVE-2018-0088 is a vulnerability in Cisco Industrial Ethernet 4010 Series Switches running Cisco IOS Software, specifically affecting diagnostic test CLI commands. An authenticated, local attacker with privilege level 15 credentials could exploit this to write to device memory. This allows for arbitrary code execution or a denial of service, impacting device stability. The CVSS score is 6.7 (Medium), indicating a local attack vector with low complexity but high impact on confidentiality, integrity, and availability. There is no known active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:cisco:industrial_ethernet_4010_series_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.