CVE-2010-3035
Cisco Ios Xr 3.4.0 – 3.9.1
Raw vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HSummary
CVE-2010-3035 is a high-severity an unspecified weakness vulnerability in Cisco Ios Xr. Its CVSS base score is 7.5 (High).
Operationally, ranked in the top 8% of CVEs by exploit likelihood; CISA has added it to the Known Exploited Vulnerabilities catalog.
EU & UK References
- 🇪🇺 ENISA EUVD: EUVD-2010-3037
Vulnerability Data
Cisco IOS XR 3.4.0 through 3.9.1, when BGP is enabled, does not properly handle unrecognized transitive attributes, which allows remote attackers to cause a denial of service (peering reset) via a crafted prefix announcement, as demonstrated in the wild in…
more
August 2010 with attribute type code 99, aka Bug ID CSCti62211.
- CWE(s)
- KEV Date Added
- 25 March 2022
Related Threats
Likely ATT&CK TechniquesAI
Techniques this vulnerability likely enables, inferred from its description, weakness type, and attributed-actor tradecraft. Confidence is per-technique.
CVEs Like This One
Affected Assets
Mitigating Controls
No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.