{"id":"CVE-2017-12237","vendor_project":"Cisco","product":"IOS and IOS XE Software","vulnerability_name":"Cisco IOS and IOS XE Software Internet Key Exchange Denial-of-Service Vulnerability","date_added":"2022-03-03","due_date":"2022-03-24","known_ransomware_use":"Unknown","short_description":"A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS and Cisco IOS XE could allow an unauthenticated, remote attacker to cause high CPU utilization, traceback messages, or a reload of an affected device that leads to a denial of service.","required_action":"Apply updates per vendor instructions.","cwes":"CWE-399","cvss_version":"3.1","cvss_severity":"HIGH","cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","nvd_published":"2017-09-29","nvd_status":"Analyzed","epss":0.0707,"epss_percentile":0.93932,"cvss_score":7.5,"days_published_to_kev":1616,"source":"https://data.cybermax-tools.workers.dev/cve/CVE-2017-12237","by":"CyberMax"}