CVE-2014-3263: Input Validation
Published May 16, 2014
·Updated
The ScanSafe module in Cisco IOS 15.3(3)M allows remote attackers to cause a denial of service (device reload) via HTTPS packets that require tower processing, aka Bug ID CSCum97038.
Affected Software
2 affected components
Cisco IOS=15.3\(3\)m
Cisco IOS=15.3m
Event History
May 16, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
via NVD·11:12 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-3263?
CVE-2014-3263 is classified as a high severity vulnerability due to its ability to cause a denial of service on affected devices.
2
How do I fix CVE-2014-3263?
To mitigate CVE-2014-3263, upgrade Cisco IOS to versions 15.3(4)M or later, which address the vulnerability.
3
What devices are affected by CVE-2014-3263?
CVE-2014-3263 affects Cisco IOS versions 15.3(3)M and 15.3M.
4
What is the impact of CVE-2014-3263?
The impact of CVE-2014-3263 is the potential for remote attackers to trigger device reloads, leading to service outages.
5
Is CVE-2014-3263 exploitable without authentication?
Yes, CVE-2014-3263 can be exploited by remote attackers without requiring authentication.