Unknown
CVE-2020-3235
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2020-3235
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software on Catalyst 4500 Series Switches could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to insufficient input validation when the software processes specific SNMP object identifiers. An attacker could exploit this vulnerability by sending a crafted SNMP packet to an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition. Note: To exploit this vulnerability by using SNMPv2c or earlier, the attacker must know the SNMP read-only community string for an affected system. To exploit this vulnerability by using SNMPv3, the attacker must know the user credentials for the affected system.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Products
- goldengate management pack 12.2.1.2.0,
- ios 12.2(52)sg,
- ios 12.2(53)sg1,
- ios 12.2(53)sg10,
- ios 12.2(53)sg11,
- ios 12.2(53)sg2,
- ios 12.2(53)sg3,
- ios 12.2(53)sg4,
- ios 12.2(53)sg5,
- ios 12.2(53)sg6,
- ios 12.2(53)sg7,
- ios 12.2(53)sg8,
- ios 12.2(53)sg9,
- ios 12.2(54)sg,
- ios 12.2(54)sg1,
- ios 12.2(54)wo,
- ios 15.0(1)ey,
- ios 15.0(1)ey2,
- ios 15.0(1)xo,
- ios 15.0(1)xo1,
- ios 15.0(2)ex2,
- ios 15.0(2)ex8,
- ios 15.0(2)sg,
- ios 15.0(2)sg1,
- ios 15.0(2)sg10,
- ios 15.0(2)sg11,
- ios 15.0(2)sg2,
- ios 15.0(2)sg3,
- ios 15.0(2)sg4,
- ios 15.0(2)sg5,
- ios 15.0(2)sg6,
- ios 15.0(2)sg7,
- ios 15.0(2)sg8,
- ios 15.0(2)sg9,
- ios 15.0(2)xo,
- ios 15.1(1)sg,
- ios 15.1(1)sg1,
- ios 15.1(1)sg2,
- ios 15.1(2)sg,
- ios 15.1(2)sg1,
- ios 15.1(2)sg2,
- ios 15.1(2)sg3,
- ios 15.1(2)sg4,
- ios 15.1(2)sg5,
- ios 15.1(2)sg6,
- ios 15.1(2)sg7,
- ios 15.1(2)sg8,
- ios 15.2(1)e,
- ios 15.2(1)e1,
- ios 15.2(1)e3,
- ios 15.2(2)e,
- ios 15.2(2)e1,
- ios 15.2(2)e10,
- ios 15.2(2)e2,
- ios 15.2(2)e3,
- ios 15.2(2)e4,
- ios 15.2(2)e5,
- ios 15.2(2)e5a,
- ios 15.2(2)e5b,
- ios 15.2(2)e6,
- ios 15.2(2)e7,
- ios 15.2(2)e7b,
- ios 15.2(2)e8,
- ios 15.2(2)e9,
- ios 15.2(2)e9a,
- ios 15.2(2b)e,
- ios 15.2(3)e,
- ios 15.2(3)e1,
- ios 15.2(3)e2,
- ios 15.2(3)e3,
- ios 15.2(3)e4,
- ios 15.2(3)e5,
- ios 15.2(4)e,
- ios 15.2(4)e1,
- ios 15.2(4)e2,
- ios 15.2(4)e3,
- ios 15.2(4)e4,
- ios 15.2(4)e5,
- ios 15.2(4)e5a,
- ios 15.2(4)e6,
- ios 15.2(4)e7,
- ios 15.2(4)e8,
- ios 15.3(3)jpj,
- ios xe 3.10.0ce,
- ios xe 3.10.0e,
- ios xe 3.10.1ae,
- ios xe 3.10.1e,
- ios xe 3.10.1se,
- ios xe 3.10.2e,
- ios xe 3.2.0sg,
- ios xe 3.2.10sg,
- ios xe 3.2.11sg,
- ios xe 3.2.1sg,
- ios xe 3.2.2sg,
- ios xe 3.2.3sg,
- ios xe 3.2.4sg,
- ios xe 3.2.5sg,
- ios xe 3.2.6sg,
- ios xe 3.2.7sg,
- ios xe 3.2.8sg,
- ios xe 3.2.9sg,
- ios xe 3.3.0sg,
- ios xe 3.3.0xo,
- ios xe 3.3.1sg,
- ios xe 3.3.1xo,
- ios xe 3.3.2sg,
- ios xe 3.3.2xo,
- ios xe 3.4.0sg,
- ios xe 3.4.1sg,
- ios xe 3.4.2sg,
- ios xe 3.4.3sg,
- ios xe 3.4.4sg,
- ios xe 3.4.5sg,
- ios xe 3.4.6sg,
- ios xe 3.4.7sg,
- ios xe 3.4.8sg,
- ios xe 3.5.0e,
- ios xe 3.5.1e,
- ios xe 3.5.2e,
- ios xe 3.5.3e,
- ios xe 3.6.0be,
- ios xe 3.6.0e,
- ios xe 3.6.10e,
- ios xe 3.6.1e,
- ios xe 3.6.3e,
- ios xe 3.6.4e,
- ios xe 3.6.5ae,
- ios xe 3.6.5be,
- ios xe 3.6.5e,
- ios xe 3.6.6e,
- ios xe 3.6.7e,
- ios xe 3.6.8e,
- ios xe 3.6.9e,
- ios xe 3.7.0e,
- ios xe 3.7.1e,
- ios xe 3.7.2e,
- ios xe 3.7.3e,
- ios xe 3.8.0e,
- ios xe 3.8.1e,
- ios xe 3.8.2e,
- ios xe 3.8.3e,
- ios xe 3.8.4e,
- ios xe 3.8.5ae,
- ios xe 3.8.5e,
- ios xe 3.8.6e,
- ios xe 3.8.7e,
- ios xe 3.8.8e,
- ios xe 3.9.0e,
- ios xe 3.9.1e,
- ios xe 3.9.2be,
- ios xe 3.9.2e
References
Miscellaneous
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: