Asr 5000 Software

Vendor:

First CVE: Oct 16, 2015 · Active for 10 years

11
Total CVEs
More Total CVEs than 89% of tracked products
3.7
Avg CVEs / Year
Higher CVE frequency than 83% of tracked products
6.0
Avg CVSS
Higher Avg CVSS than 21% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Asr 5000 Software over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 16, 2015
10 years ago
Most Recent CVE
Aug 17, 2017
3,264 days ago

CVE Severity & Scoring

Asr 5000 Software11 CVEs
All CVEs352,708 CVEs
MediumHigh
Attack Vector
Local2 (18.2%)
Network6 (54.5%)
Unknown3 (27.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low8 (72.7%)
High0 (0.0%)
Unknown3 (27.3%)
User Interaction
None8 (72.7%)
Unknown3 (27.3%)
Required0 (0.0%)
Privileges Required
Low1 (9.1%)
High3 (27.3%)
None4 (36.4%)
Unknown3 (27.3%)

Top CVEs

Signals from CVEs in this product scope (11 CVEs).

11 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
A vulnerability in the Slowpath of StarOS for Cisco ASR 5500 Series routers with Data Processing Card 2 (DPC2) could allow an unauthenticated, remote attacker to cause a subset of
Nov 3, 20167.526NONO
A vulnerability in the Border Gateway Protocol (BGP) processing functionality of the Cisco StarOS operating system for Cisco ASR 5000 Series Routers and Cisco Virtualized Packet Co
Jul 10, 20177.524NONO
The General Packet Radio Switching Tunneling Protocol 1 (aka GTPv1) implementation on Cisco ASR 5000 Packet Data Network Gateway devices before 19.4 allows remote attackers to caus
Jun 23, 20167.524NONO
Cisco ASR 5000 devices with software 18.3 through 20.0.0 allow remote attackers to make configuration changes over SNMP by leveraging knowledge of the read-write community, aka Bug
Jul 15, 20166.523NONO
A vulnerability in the CLI of Cisco ASR 5000 Series Aggregated Services Routers running the Cisco StarOS operating system could allow an authenticated, local attacker to bypass the
Aug 17, 20176.720NONO
A vulnerability in the CLI of Cisco ASR 5000 Series Aggregated Services Routers running the Cisco StarOS operating system could allow an authenticated, local attacker to elevate th
Aug 17, 20175.719NONO
A vulnerability in Cisco ASR 5000 Series Aggregated Services Routers running the Cisco StarOS operating system could allow an authenticated, remote attacker to overwrite or modify
Aug 17, 20175.018NONO
A vulnerability in the file check operation of Cisco ASR 5000 Series Aggregated Services Routers running the Cisco StarOS operating system could allow an authenticated, remote atta
Jun 13, 20174.917NONO
Cisco ASR 5500 System Architecture Evolution (SAE) Gateway devices with software 19.1.0.61559 and 19.2.0 allow remote attackers to cause a denial of service (BGP process restart) v
Oct 30, 20155.015NONO
The Proxy Mobile IPv6 (PMIPv6) component in the CDMA implementation on Cisco ASR 5000 devices with software 19.0.M0.60737 allows remote attackers to cause a denial of service (hamg
Oct 27, 20155.015NONO

Exploit Exposure

Signals from CVEs in this product scope (11 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (11 CVEs).

Media Mentions

Signals from CVEs in this product scope (11 CVEs).

Top CNAs Publishing CVEs For Asr 5000 Software

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
21.3.m0.6700514.91.3%00
21.0.v117.52.3%00
21.0.v0.6583945.60.8%00
21.0_m0.6470217.52.3%00
21.0_m0.6424617.52.3%00
21.0_base17.52.3%00
21.0.017.52.3%00
20.2_base17.52.3%00
20.2.1217.52.3%00
20.1.v217.52.3%00
20.1_base17.52.3%00
20.0.v017.52.3%00
20.0.m0.6322917.52.3%00
20.0.m0.6284217.52.3%00
20.0.2.v117.52.3%00
20.0.2.3.6502617.52.3%00
20.0.2.317.52.3%00
20.0.1.v017.52.3%00
20.0.1.a017.52.3%00
20.0.1.017.52.3%00