Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2011-4007

Cisco IOS 15.0 and 15.1 and IOS XE 3.x do not properly handle the "set mpls experimental imposition" command, which allows remote attackers to cause a denial of service (device crash) via network traffic that triggers (1) fragmentation or (2) reassembly, aka Bug ID CSCtr56576.

  • Published: May 2, 2012
  • Updated: Apr 13, 2023
  • CVE: CVE-2011-4007
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 5.4
  • AV:N/AC:H/Au:N/C:N/I:N/A:C

CWEs:

Software From Fixed in
cisco / ios_xe 3.2.0sg 3.2.0sg.x
cisco / ios_xe 3.5.0s 3.5.0s.x
cisco / ios_xe 3.4.1s 3.4.1s.x
cisco / ios 15.1 15.1.x
cisco / ios_xe 3.3.3s 3.3.3s.x
cisco / ios_xe 3.3.1s 3.3.1s.x
cisco / ios_xe 3.2.0s 3.2.0s.x
cisco / ios_xe 3.3.2s 3.3.2s.x
cisco / ios 15.0 15.0.x
cisco / ios_xe 3.2.1sg 3.2.1sg.x
cisco / ios_xe 3.2.1s 3.2.1s.x
cisco / ios_xe 3.1.0sg 3.1.0sg.x
cisco / ios_xe 3.1.2s 3.1.2s.x
cisco / ios_xe 3.4.0s 3.4.0s.x
cisco / ios_xe 3.1.1s 3.1.1s.x
cisco / ios_xe 3.2.2s 3.2.2s.x
cisco / ios_xe 3.1.0s 3.1.0s.x
cisco / ios_xe 3.1.4s 3.1.4s.x
cisco / ios_xe 3.3.0s 3.3.0s.x
cisco / ios_xe 3.1.3s 3.1.3s.x
cisco / ios_xe 3.1.1sg 3.1.1sg.x