CVE Vulnerabilities

CVE-2017-3856

Published: Mar 22, 2017 | Modified: Apr 20, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A vulnerability in the web user interface of Cisco IOS XE 3.1 through 3.17 could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to insufficient resource handling by the affected software when the web user interface is under a high load. An attacker could exploit this vulnerability by sending a high number of requests to the web user interface of the affected software. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition. To exploit this vulnerability, the attacker must have access to the management interface of the affected software, which is typically connected to a restricted management network. This vulnerability affects Cisco devices that are running a vulnerable release of Cisco IOS XE Software, if the web user interface of the software is enabled. By default, the web user interface is not enabled. Cisco Bug IDs: CSCup70353.

Affected Software

NameVendorStart VersionEnd Version
Ios_xeCisco3.1.0s (including)3.1.0s (including)
Ios_xeCisco3.1.0sg (including)3.1.0sg (including)
Ios_xeCisco3.1.1s (including)3.1.1s (including)
Ios_xeCisco3.1.1sg (including)3.1.1sg (including)
Ios_xeCisco3.1.2s (including)3.1.2s (including)
Ios_xeCisco3.1.3as (including)3.1.3as (including)
Ios_xeCisco3.1.3s (including)3.1.3s (including)
Ios_xeCisco3.1.4as (including)3.1.4as (including)
Ios_xeCisco3.1.4s (including)3.1.4s (including)
Ios_xeCisco3.1s (including)3.1s (including)
Ios_xeCisco3.1sg (including)3.1sg (including)
Ios_xeCisco3.2.0ja (including)3.2.0ja (including)
Ios_xeCisco3.2.0se (including)3.2.0se (including)
Ios_xeCisco3.2.0sg (including)3.2.0sg (including)
Ios_xeCisco3.2.0xo (including)3.2.0xo (including)
Ios_xeCisco3.2.1s (including)3.2.1s (including)
Ios_xeCisco3.2.1se (including)3.2.1se (including)
Ios_xeCisco3.2.1sg (including)3.2.1sg (including)
Ios_xeCisco3.2.1xo (including)3.2.1xo (including)
Ios_xeCisco3.2.2s (including)3.2.2s (including)
Ios_xeCisco3.2.2se (including)3.2.2se (including)
Ios_xeCisco3.2.2sg (including)3.2.2sg (including)
Ios_xeCisco3.2.3se (including)3.2.3se (including)
Ios_xeCisco3.2.3sg (including)3.2.3sg (including)
Ios_xeCisco3.2.4sg (including)3.2.4sg (including)
Ios_xeCisco3.2.5sg (including)3.2.5sg (including)
Ios_xeCisco3.2.6sg (including)3.2.6sg (including)
Ios_xeCisco3.2.7sg (including)3.2.7sg (including)
Ios_xeCisco3.2.8sg (including)3.2.8sg (including)
Ios_xeCisco3.2.9sg (including)3.2.9sg (including)
Ios_xeCisco3.2.11sg (including)3.2.11sg (including)
Ios_xeCisco3.2ja (including)3.2ja (including)
Ios_xeCisco3.2s (including)3.2s (including)
Ios_xeCisco3.2se (including)3.2se (including)
Ios_xeCisco3.2sg (including)3.2sg (including)
Ios_xeCisco3.2xo (including)3.2xo (including)
Ios_xeCisco3.3.0s (including)3.3.0s (including)
Ios_xeCisco3.3.0se (including)3.3.0se (including)
Ios_xeCisco3.3.0sg (including)3.3.0sg (including)
Ios_xeCisco3.3.0sq (including)3.3.0sq (including)
Ios_xeCisco3.3.0xo (including)3.3.0xo (including)
Ios_xeCisco3.3.1s (including)3.3.1s (including)
Ios_xeCisco3.3.1se (including)3.3.1se (including)
Ios_xeCisco3.3.1sg (including)3.3.1sg (including)
Ios_xeCisco3.3.1sq (including)3.3.1sq (including)
Ios_xeCisco3.3.1xo (including)3.3.1xo (including)
Ios_xeCisco3.3.2s (including)3.3.2s (including)
Ios_xeCisco3.3.2se (including)3.3.2se (including)
Ios_xeCisco3.3.2sg (including)3.3.2sg (including)
Ios_xeCisco3.3.2xo (including)3.3.2xo (including)
Ios_xeCisco3.3.3se (including)3.3.3se (including)
Ios_xeCisco3.3.4se (including)3.3.4se (including)
Ios_xeCisco3.3.5se (including)3.3.5se (including)
Ios_xeCisco3.3s (including)3.3s (including)
Ios_xeCisco3.3se (including)3.3se (including)
Ios_xeCisco3.3sg (including)3.3sg (including)
Ios_xeCisco3.3sq (including)3.3sq (including)
Ios_xeCisco3.3xo (including)3.3xo (including)
Ios_xeCisco3.4.0as (including)3.4.0as (including)
Ios_xeCisco3.4.0s (including)3.4.0s (including)
Ios_xeCisco3.4.0sg (including)3.4.0sg (including)
Ios_xeCisco3.4.0sq (including)3.4.0sq (including)
Ios_xeCisco3.4.1s (including)3.4.1s (including)
Ios_xeCisco3.4.1sg (including)3.4.1sg (including)
Ios_xeCisco3.4.1sq (including)3.4.1sq (including)
Ios_xeCisco3.4.2s (including)3.4.2s (including)
Ios_xeCisco3.4.2sg (including)3.4.2sg (including)
Ios_xeCisco3.4.3s (including)3.4.3s (including)
Ios_xeCisco3.4.3sg (including)3.4.3sg (including)
Ios_xeCisco3.4.4s (including)3.4.4s (including)
Ios_xeCisco3.4.4sg (including)3.4.4sg (including)
Ios_xeCisco3.4.5s (including)3.4.5s (including)
Ios_xeCisco3.4.5sg (including)3.4.5sg (including)
Ios_xeCisco3.4.6s (including)3.4.6s (including)
Ios_xeCisco3.4.6sg (including)3.4.6sg (including)
Ios_xeCisco3.4.7sg (including)3.4.7sg (including)
Ios_xeCisco3.4.8sg (including)3.4.8sg (including)
Ios_xeCisco3.4s (including)3.4s (including)
Ios_xeCisco3.4sg (including)3.4sg (including)
Ios_xeCisco3.4sq (including)3.4sq (including)
Ios_xeCisco3.5.0e (including)3.5.0e (including)
Ios_xeCisco3.5.0s (including)3.5.0s (including)
Ios_xeCisco3.5.0sq (including)3.5.0sq (including)
Ios_xeCisco3.5.1e (including)3.5.1e (including)
Ios_xeCisco3.5.1s (including)3.5.1s (including)
Ios_xeCisco3.5.1sq (including)3.5.1sq (including)
Ios_xeCisco3.5.2e (including)3.5.2e (including)
Ios_xeCisco3.5.2s (including)3.5.2s (including)
Ios_xeCisco3.5.2sq (including)3.5.2sq (including)
Ios_xeCisco3.5.3e (including)3.5.3e (including)
Ios_xeCisco3.5.3sq (including)3.5.3sq (including)
Ios_xeCisco3.5.4sq (including)3.5.4sq (including)
Ios_xeCisco3.5.5sq (including)3.5.5sq (including)
Ios_xeCisco3.5e (including)3.5e (including)
Ios_xeCisco3.5s (including)3.5s (including)
Ios_xeCisco3.5sq (including)3.5sq (including)
Ios_xeCisco3.6.0e (including)3.6.0e (including)
Ios_xeCisco3.6.0s (including)3.6.0s (including)
Ios_xeCisco3.6.1e (including)3.6.1e (including)
Ios_xeCisco3.6.1s (including)3.6.1s (including)
Ios_xeCisco3.6.2ae (including)3.6.2ae (including)
Ios_xeCisco3.6.2s (including)3.6.2s (including)
Ios_xeCisco3.6.3e (including)3.6.3e (including)
Ios_xeCisco3.6.4e (including)3.6.4e (including)
Ios_xeCisco3.6.5ae (including)3.6.5ae (including)
Ios_xeCisco3.6.5be (including)3.6.5be (including)
Ios_xeCisco3.6.5e (including)3.6.5e (including)
Ios_xeCisco3.6e (including)3.6e (including)
Ios_xeCisco3.6s (including)3.6s (including)
Ios_xeCisco3.7.0bs (including)3.7.0bs (including)
Ios_xeCisco3.7.0e (including)3.7.0e (including)
Ios_xeCisco3.7.0s (including)3.7.0s (including)
Ios_xeCisco3.7.1e (including)3.7.1e (including)
Ios_xeCisco3.7.1s (including)3.7.1s (including)
Ios_xeCisco3.7.2e (including)3.7.2e (including)
Ios_xeCisco3.7.2s (including)3.7.2s (including)
Ios_xeCisco3.7.2ts (including)3.7.2ts (including)
Ios_xeCisco3.7.3e (including)3.7.3e (including)
Ios_xeCisco3.7.3s (including)3.7.3s (including)
Ios_xeCisco3.7.4e (including)3.7.4e (including)
Ios_xeCisco3.7.4s (including)3.7.4s (including)
Ios_xeCisco3.7.5s (including)3.7.5s (including)
Ios_xeCisco3.7.6s (including)3.7.6s (including)
Ios_xeCisco3.7.7s (including)3.7.7s (including)
Ios_xeCisco3.7e (including)3.7e (including)
Ios_xeCisco3.7s (including)3.7s (including)
Ios_xeCisco3.8.0e (including)3.8.0e (including)
Ios_xeCisco3.8.0ex (including)3.8.0ex (including)
Ios_xeCisco3.8.0s (including)3.8.0s (including)
Ios_xeCisco3.8.1e (including)3.8.1e (including)
Ios_xeCisco3.8.1s (including)3.8.1s (including)
Ios_xeCisco3.8.2e (including)3.8.2e (including)
Ios_xeCisco3.8.2s (including)3.8.2s (including)
Ios_xeCisco3.8e (including)3.8e (including)
Ios_xeCisco3.8ex (including)3.8ex (including)
Ios_xeCisco3.8s (including)3.8s (including)
Ios_xeCisco3.9.0e (including)3.9.0e (including)
Ios_xeCisco3.9.0s (including)3.9.0s (including)
Ios_xeCisco3.9.1s (including)3.9.1s (including)
Ios_xeCisco3.9.2s (including)3.9.2s (including)
Ios_xeCisco3.9e (including)3.9e (including)
Ios_xeCisco3.9s (including)3.9s (including)
Ios_xeCisco3.10.0s (including)3.10.0s (including)
Ios_xeCisco3.10.1s (including)3.10.1s (including)
Ios_xeCisco3.10.1xbs (including)3.10.1xbs (including)
Ios_xeCisco3.10.2s (including)3.10.2s (including)
Ios_xeCisco3.10.2ts (including)3.10.2ts (including)
Ios_xeCisco3.10.3s (including)3.10.3s (including)
Ios_xeCisco3.10.4s (including)3.10.4s (including)
Ios_xeCisco3.10.5s (including)3.10.5s (including)
Ios_xeCisco3.10.6s (including)3.10.6s (including)
Ios_xeCisco3.10.7s (including)3.10.7s (including)
Ios_xeCisco3.10.8s (including)3.10.8s (including)
Ios_xeCisco3.10s (including)3.10s (including)
Ios_xeCisco3.11.0s (including)3.11.0s (including)
Ios_xeCisco3.11.1s (including)3.11.1s (including)
Ios_xeCisco3.11.2s (including)3.11.2s (including)
Ios_xeCisco3.11.3s (including)3.11.3s (including)
Ios_xeCisco3.11.4s (including)3.11.4s (including)
Ios_xeCisco3.11s (including)3.11s (including)
Ios_xeCisco3.12.0as (including)3.12.0as (including)
Ios_xeCisco3.12.0s (including)3.12.0s (including)
Ios_xeCisco3.12.1s (including)3.12.1s (including)
Ios_xeCisco3.12.2s (including)3.12.2s (including)
Ios_xeCisco3.12.3s (including)3.12.3s (including)
Ios_xeCisco3.12.4s (including)3.12.4s (including)
Ios_xeCisco3.12s (including)3.12s (including)
Ios_xeCisco3.13.0as (including)3.13.0as (including)
Ios_xeCisco3.13.0s (including)3.13.0s (including)
Ios_xeCisco3.13.1s (including)3.13.1s (including)
Ios_xeCisco3.13.2as (including)3.13.2as (including)
Ios_xeCisco3.13.2s (including)3.13.2s (including)
Ios_xeCisco3.13.3s (including)3.13.3s (including)
Ios_xeCisco3.13.4s (including)3.13.4s (including)
Ios_xeCisco3.13s (including)3.13s (including)
Ios_xeCisco3.14.0s (including)3.14.0s (including)
Ios_xeCisco3.14.1s (including)3.14.1s (including)
Ios_xeCisco3.14.2s (including)3.14.2s (including)
Ios_xeCisco3.14.3s (including)3.14.3s (including)
Ios_xeCisco3.14.4s (including)3.14.4s (including)
Ios_xeCisco3.14s (including)3.14s (including)
Ios_xeCisco3.15.0s (including)3.15.0s (including)
Ios_xeCisco3.15.1cs (including)3.15.1cs (including)
Ios_xeCisco3.15.1s (including)3.15.1s (including)
Ios_xeCisco3.15.2s (including)3.15.2s (including)
Ios_xeCisco3.15.3s (including)3.15.3s (including)
Ios_xeCisco3.15s (including)3.15s (including)
Ios_xeCisco3.16.0cs (including)3.16.0cs (including)
Ios_xeCisco3.16.0s (including)3.16.0s (including)
Ios_xeCisco3.16.1as (including)3.16.1as (including)
Ios_xeCisco3.16.1s (including)3.16.1s (including)
Ios_xeCisco3.16s (including)3.16s (including)
Ios_xeCisco3.17.0s (including)3.17.0s (including)
Ios_xeCisco3.17.1as (including)3.17.1as (including)
Ios_xeCisco3.17.1s (including)3.17.1s (including)
Ios_xeCisco3.17.2s (including)3.17.2s (including)
Ios_xeCisco3.17.3s (including)3.17.3s (including)
Ios_xeCisco3.17s (including)3.17s (including)

References