CVE-2020-3201 is a denial-of-service vulnerability affecting Cisco IOS and IOS XE Software, specifically within the Tool Command Language (Tcl) interpreter. An authenticated, local attacker with privileged EXEC credentials can exploit insufficient input validation by executing crafted Tcl arguments, causing the device to reload. This vulnerability has a CVSS score of 6.0 (Medium), indicating a local attack vector with low complexity, high privileges required, and a high impact on availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
12.2\(18\)ixaCPE matchmatch criteria | cpe:2.3:o:cisco:ios:12.2\(18\)ixa:*:*:*:*:*:*:* | ||
12.2\(18\)ixbCPE matchmatch criteria | cpe:2.3:o:cisco:ios:12.2\(18\)ixb:*:*:*:*:*:*:* | ||
12.2\(18\)ixb1CPE matchmatch criteria | cpe:2.3:o:cisco:ios:12.2\(18\)ixb1:*:*:*:*:*:*:* | ||
12.2\(18\)ixb2CPE matchmatch criteria | cpe:2.3:o:cisco:ios:12.2\(18\)ixb2:*:*:*:*:*:*:* | ||
12.2\(18\)ixcCPE matchmatch criteria | cpe:2.3:o:cisco:ios:12.2\(18\)ixc:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.