Asr 5000 Software
Vendor:
First CVE: Oct 16, 2015 · Active for 10 years
11
Total CVEs
More Total CVEs than 89% of tracked products
3.7
Avg CVEs / Year
Higher CVE frequency than 83% of tracked products
6.0
Avg CVSS
Higher Avg CVSS than 21% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Asr 5000 Software over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 16, 2015
10 years ago
Most Recent CVE
Aug 17, 2017
3,264 days ago
CVE Severity & Scoring
Asr 5000 Software11 CVEs
73%
27%
All CVEs352,708 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local2 (18.2%)
Network6 (54.5%)
Unknown3 (27.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low8 (72.7%)
High0 (0.0%)
Unknown3 (27.3%)
User Interaction
None8 (72.7%)
Unknown3 (27.3%)
Required0 (0.0%)
Privileges Required
Low1 (9.1%)
High3 (27.3%)
None4 (36.4%)
Unknown3 (27.3%)
Top CVEs
Signals from CVEs in this product scope (11 CVEs).
11 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-6455HIGH A vulnerability in the Slowpath of StarOS for Cisco ASR 5500 Series routers with Data Processing Card 2 (DPC2) could allow an unauthenticated, remote attacker to cause a subset of | Nov 3, 2016 | 7.5 | 26 | NO | NO |
CVE-2017-6729HIGH A vulnerability in the Border Gateway Protocol (BGP) processing functionality of the Cisco StarOS operating system for Cisco ASR 5000 Series Routers and Cisco Virtualized Packet Co | Jul 10, 2017 | 7.5 | 24 | NO | NO |
CVE-2016-1436HIGH The General Packet Radio Switching Tunneling Protocol 1 (aka GTPv1) implementation on Cisco ASR 5000 Packet Data Network Gateway devices before 19.4 allows remote attackers to caus | Jun 23, 2016 | 7.5 | 24 | NO | NO |
CVE-2016-1452MEDIUM Cisco ASR 5000 devices with software 18.3 through 20.0.0 allow remote attackers to make configuration changes over SNMP by leveraging knowledge of the read-write community, aka Bug | Jul 15, 2016 | 6.5 | 23 | NO | NO |
CVE-2017-6773MEDIUM A vulnerability in the CLI of Cisco ASR 5000 Series Aggregated Services Routers running the Cisco StarOS operating system could allow an authenticated, local attacker to bypass the | Aug 17, 2017 | 6.7 | 20 | NO | NO |
CVE-2017-6775MEDIUM A vulnerability in the CLI of Cisco ASR 5000 Series Aggregated Services Routers running the Cisco StarOS operating system could allow an authenticated, local attacker to elevate th | Aug 17, 2017 | 5.7 | 19 | NO | NO |
CVE-2017-6774MEDIUM A vulnerability in Cisco ASR 5000 Series Aggregated Services Routers running the Cisco StarOS operating system could allow an authenticated, remote attacker to overwrite or modify | Aug 17, 2017 | 5.0 | 18 | NO | NO |
CVE-2017-6690MEDIUM A vulnerability in the file check operation of Cisco ASR 5000 Series Aggregated Services Routers running the Cisco StarOS operating system could allow an authenticated, remote atta | Jun 13, 2017 | 4.9 | 17 | NO | NO |
CVE-2015-6351MEDIUM Cisco ASR 5500 System Architecture Evolution (SAE) Gateway devices with software 19.1.0.61559 and 19.2.0 allow remote attackers to cause a denial of service (BGP process restart) v | Oct 30, 2015 | 5.0 | 15 | NO | NO |
CVE-2015-6340MEDIUM The Proxy Mobile IPv6 (PMIPv6) component in the CDMA implementation on Cisco ASR 5000 devices with software 19.0.M0.60737 allows remote attackers to cause a denial of service (hamg | Oct 27, 2015 | 5.0 | 15 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (11 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (11 CVEs).
Media Mentions
Signals from CVEs in this product scope (11 CVEs).
Top CNAs Publishing CVEs For Asr 5000 Software
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 21.3.m0.67005 | 1 | 4.9 | 1.3% | 0 | 0 |
| 21.0.v1 | 1 | 7.5 | 2.3% | 0 | 0 |
| 21.0.v0.65839 | 4 | 5.6 | 0.8% | 0 | 0 |
| 21.0_m0.64702 | 1 | 7.5 | 2.3% | 0 | 0 |
| 21.0_m0.64246 | 1 | 7.5 | 2.3% | 0 | 0 |
| 21.0_base | 1 | 7.5 | 2.3% | 0 | 0 |
| 21.0.0 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.2_base | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.2.12 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.1.v2 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.1_base | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.0.v0 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.0.m0.63229 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.0.m0.62842 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.0.2.v1 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.0.2.3.65026 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.0.2.3 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.0.1.v0 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.0.1.a0 | 1 | 7.5 | 2.3% | 0 | 0 |
| 20.0.1.0 | 1 | 7.5 | 2.3% | 0 | 0 |