Cisco IOS XE Software SNMP Denial of Service Vulnerability
A vulnerability in the SNMP subsystem of Cisco IOS XE Software allows an authenticated remote attacker to cause a device reload by sending a malformed SNMP request. The vulnerability stems from improper error handling when parsing SNMP requests across all SNMP versions (1, 2c, and 3). An attacker must have valid SNMPv1/v2c community strings or SNMPv3 user credentials to exploit this vulnerability. Successful exploitation results in a denial of service condition as the affected device reloads unexpectedly.
- Valid SNMPv1 or SNMPv2c read-only or read-write community string, or valid SNMPv3 user credentials
- Network access to the device's SNMP port (UDP 161)
Patching may require device reboot — plan for process interruption
/api/v1/advisories/30385dc1-8389-4431-bb3b-e7f8c652d629Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.