CVE detail
CVE-2014-7992 — CVE-2014-7992
Published 2014-11-18 · Modified 2026-06-17 · Vendor cisco · Product ios · Source nvd
UNKNOWN
severity
CVSS-derived band
0.2715
EPSS probability
exploitation probability, 30d
98.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The DLSw implementation in Cisco IOS does not initialize packet buffers, which allows remote attackers to obtain sensitive credential information from process memory via a session on TCP port 2067, aka Bug ID CSCur14014.
Remediation
| Product | Vulnerable range | Fixed version | Advisory |
|---|
| n/a n/a | — | not specified | advisory ↗ |
References