ID

VAR-201506-0157


CVE

CVE-2015-0765


TITLE

Cisco ONS 15454 Service operation interruption in system software (DoS) Vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2015-002944

DESCRIPTION

Cisco ONS 15454 System Software 10.30 and 10.301 allows remote attackers to cause a denial of service (tNetTask CPU consumption or card reset) via a flood of (1) IP or (2) Ethernet traffic, aka Bug ID CSCus57263. Cisco ONS 15454 System Software is prone to a denial-of-service vulnerability. An attacker can exploit this issue to cause the control card on an affected device to reset, denying service to legitimate users. This issue is being tracked by Cisco bug ID CSCus57263. Cisco ONS 15454 System Software is a set of multi-service provisioning platform for Cisco optical transmission products of American Cisco (Cisco)

Trust: 2.07

sources: NVD: CVE-2015-0765 // JVNDB: JVNDB-2015-002944 // BID: 75002 // VULHUB: VHN-78711 // VULMON: CVE-2015-0765

AFFECTED PRODUCTS

vendor:ciscomodel:ons 15454 system softwarescope:eqversion:10.30

Trust: 2.4

vendor:ciscomodel:ons 15454 system softwarescope:eqversion:10.301

Trust: 2.4

vendor:ciscomodel:ons 15454scope: - version: -

Trust: 0.8

vendor:ciscomodel:ons system softwarescope:eqversion:1545410.301

Trust: 0.3

vendor:ciscomodel:ons system softwarescope:eqversion:1545410.30

Trust: 0.3

sources: BID: 75002 // JVNDB: JVNDB-2015-002944 // CNNVD: CNNVD-201506-054 // NVD: CVE-2015-0765

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2015-0765
value: MEDIUM

Trust: 1.0

NVD: CVE-2015-0765
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-201506-054
value: MEDIUM

Trust: 0.6

VULHUB: VHN-78711
value: MEDIUM

Trust: 0.1

VULMON: CVE-2015-0765
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2015-0765
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.9

VULHUB: VHN-78711
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-78711 // VULMON: CVE-2015-0765 // JVNDB: JVNDB-2015-002944 // CNNVD: CNNVD-201506-054 // NVD: CVE-2015-0765

PROBLEMTYPE DATA

problemtype:CWE-399

Trust: 1.9

sources: VULHUB: VHN-78711 // JVNDB: JVNDB-2015-002944 // NVD: CVE-2015-0765

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201506-054

TYPE

resource management error

Trust: 0.6

sources: CNNVD: CNNVD-201506-054

CONFIGURATIONS

sources: JVNDB: JVNDB-2015-002944

PATCH

title:39172url:http://tools.cisco.com/security/center/viewAlert.x?alertId=39172

Trust: 0.8

title:Cisco: Cisco ONS 15454 System Software Denial of Service Vulnerabilityurl:https://vulmon.com/vendoradvisory?qidtp=cisco_security_advisories_and_alerts_ciscoproducts&qid=Cisco-SA-20150603-CVE-2015-0765

Trust: 0.1

sources: VULMON: CVE-2015-0765 // JVNDB: JVNDB-2015-002944

EXTERNAL IDS

db:NVDid:CVE-2015-0765

Trust: 2.9

db:SECTRACKid:1032483

Trust: 1.2

db:JVNDBid:JVNDB-2015-002944

Trust: 0.8

db:CNNVDid:CNNVD-201506-054

Trust: 0.7

db:BIDid:75002

Trust: 0.5

db:VULHUBid:VHN-78711

Trust: 0.1

db:VULMONid:CVE-2015-0765

Trust: 0.1

sources: VULHUB: VHN-78711 // VULMON: CVE-2015-0765 // BID: 75002 // JVNDB: JVNDB-2015-002944 // CNNVD: CNNVD-201506-054 // NVD: CVE-2015-0765

REFERENCES

url:http://tools.cisco.com/security/center/viewalert.x?alertid=39172

Trust: 2.1

url:http://www.securitytracker.com/id/1032483

Trust: 1.2

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2015-0765

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2015-0765

Trust: 0.8

url:http://www.cisco.com/

Trust: 0.3

url:https://cwe.mitre.org/data/definitions/399.html

Trust: 0.1

url:https://nvd.nist.gov

Trust: 0.1

url:https://www.securityfocus.com/bid/75002

Trust: 0.1

url:http://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-20150603-cve-2015-0765

Trust: 0.1

sources: VULHUB: VHN-78711 // VULMON: CVE-2015-0765 // BID: 75002 // JVNDB: JVNDB-2015-002944 // CNNVD: CNNVD-201506-054 // NVD: CVE-2015-0765

CREDITS

Cisco

Trust: 0.3

sources: BID: 75002

SOURCES

db:VULHUBid:VHN-78711
db:VULMONid:CVE-2015-0765
db:BIDid:75002
db:JVNDBid:JVNDB-2015-002944
db:CNNVDid:CNNVD-201506-054
db:NVDid:CVE-2015-0765

LAST UPDATE DATE

2025-04-13T23:37:32.161000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-78711date:2017-01-04T00:00:00
db:VULMONid:CVE-2015-0765date:2017-01-04T00:00:00
db:BIDid:75002date:2015-06-03T00:00:00
db:JVNDBid:JVNDB-2015-002944date:2015-06-05T00:00:00
db:CNNVDid:CNNVD-201506-054date:2015-06-10T00:00:00
db:NVDid:CVE-2015-0765date:2025-04-12T10:46:40.837

SOURCES RELEASE DATE

db:VULHUBid:VHN-78711date:2015-06-04T00:00:00
db:VULMONid:CVE-2015-0765date:2015-06-04T00:00:00
db:BIDid:75002date:2015-06-03T00:00:00
db:JVNDBid:JVNDB-2015-002944date:2015-06-05T00:00:00
db:CNNVDid:CNNVD-201506-054date:2015-06-05T00:00:00
db:NVDid:CVE-2015-0765date:2015-06-04T10:59:05.957