CVE-2013-6701
The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritize health pings, which allows remote attackers to cause a denial of service (watchdog timeout and TNC…
Does this matter?
Lower severity and a low EPSS score (1.86%). Track it; it rarely justifies an emergency change on its own.
Description
The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritize health pings, which allows remote attackers to cause a denial of service (watchdog timeout and TNC reset) via a flood of network traffic, aka Bug ID CSCud97155.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 1.86% probability · 78th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- cisco/cisco ons 15454 system software · cisco/ons 15454 mspp · cisco/ons 15454 mstp · cisco/ons 15454e optical transport platform · cisco/ons 15454 · cisco/ons 15454 multiservice transport platform · cisco/ons 15454 sdh multiservice provisioning platform · cisco/ons 15454 sonet multiservice provisioning platform
- Source
- psirt@cisco.com
References
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6701Vendor Advisory
- http://tools.cisco.com/security/center/viewAlert.x?alertId=32200Vendor Advisory
- http://www.securitytracker.com/id/1029512Third Party Advisory, VDB Entry
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6701Vendor Advisory
- http://tools.cisco.com/security/center/viewAlert.x?alertId=32200Vendor Advisory
- http://www.securitytracker.com/id/1029512Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.