CVE-2018-0171
Cisco IOS and IOS XE Software Smart Install Remote Code Execution Vulnerability
⚠ KEVEPSS 99.5%
Description
Cisco IOS and IOS XE Software improperly validates packet data, allowing an unauthenticated, remote attacker to trigger a reload of an affected device, cause a denial-of-service (DoS) condition, or perform code execution on the affected device.
How to fix CVE-2018-0171
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2018-0171 being exploited?
Yes — CVE-2018-0171 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.