Security Advisory

CVE-2020-3526

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-09-24 17:51:17
Last updated 2024-11-13 18:01:27
Assigner cisco
State PUBLISHED

Description

A vulnerability in the Common Open Policy Service (COPS) engine of Cisco IOS XE Software on Cisco cBR-8 Converged Broadband Routers could allow an unauthenticated, remote attacker to crash a device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a malformed COPS message to the device. A successful exploit could allow the attacker to crash the device.