CVE-2013-3410
Last modified
CVE-2013-3410 is a vulnerability of currently unknown severity. Cisco Intrusion Prevention System (IPS) Software on IPS NME devices before 7.0(9)E4 allows remote attackers to cause a denial of service (device reload) via malformed IPv4 packets that trigger incorrect memory allocation, aka Bug ID CSCua61977.. EPSS estimates a 1.33% chance of exploitation in the next 30 days.
Description
Cisco Intrusion Prevention System (IPS) Software on IPS NME devices before 7.0(9)E4 allows remote attackers to cause a denial of service (device reload) via malformed IPv4 packets that trigger incorrect memory allocation, aka Bug ID CSCua61977.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Intrusion Prevention System | <= 7.0\(8\)e4 |
| Cisco | Intrusion Prevention System | 7.0 |
| Cisco | Intrusion Prevention System | 7.0\(1\)e3 |
| Cisco | Intrusion Prevention System | 7.0\(2\)e3 |
| Cisco | Intrusion Prevention System | 7.0\(2\)e4 |
| Cisco | Intrusion Prevention System | 7.0\(3\)e4 |
| Cisco | Intrusion Prevention System | 7.0\(4\)e4 |
| Cisco | Intrusion Prevention System | 7.0\(5a\)e4 |
| Cisco | Intrusion Prevention System | 7.0\(6\)e4 |
| Cisco | Intrusion Prevention System | 7.0\(7\)e4 |
| Cisco | Ips Nme | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-3410?
How severe is CVE-2013-3410?
How do I fix CVE-2013-3410?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-3404SQL injection vulnerability in Cisco Unified Communications …
- CVE-2013-3405The web portal in TC software on Cisco TelePresence endpoint…
- CVE-2013-3406The "Files Available for Download" implementation in the Cis…
- CVE-2013-3407The web interface in Cisco Server Provisioner 6.4.0 Patch 5-…
- CVE-2013-3408The firmware on Cisco Virtualization Experience Client 6000 …
- CVE-2013-3409The portal in Cisco Prime Central for Hosted Collaboration S…
- CVE-2013-3411The IDSM-2 drivers in Cisco Intrusion Prevention System (IPS…
- CVE-2013-3412SQL injection vulnerability in Cisco Unified Communications …
- CVE-2013-3413Cross-site scripting (XSS) vulnerability in the search form …
- CVE-2013-3414Cross-site scripting (XSS) vulnerability in the WebVPN porta…
- CVE-2013-3415Cisco Adaptive Security Appliance (ASA) Software 8.4.x befor…
- CVE-2013-3416Cross-site scripting (XSS) vulnerability in the web framewor…
Are you affected by CVE-2013-3410?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
