CVE-2018-15375 is a memory write vulnerability in Cisco IOS Software for Cisco 800 Series Industrial Integrated Services Routers, stemming from exposed internal test commands. An authenticated, local attacker can exploit this to write arbitrary values to arbitrary memory locations. With a CVSS score of 6.7 (Medium), the attack requires high privileges but has high impact on confidentiality, integrity, and availability. There is no known active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
15.5\(2.21\)tCPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.5\(2.21\)t:*:*:*:*:*:*:* | ||
15.6\(3\)mCPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.6\(3\)m:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.