Vulnerability Intelligence

🛡 CVE-2017-6627

Cisco IOS Software and Cisco IOS XE Software UDP Packet Processing Denial-of-Service Vulnerability
Cisco IOS and IOS XE Software CWE-399

Ransomware use

CISA KEV

EPSS

6.0%
Moderate · 93th pct

Added to KEV

2022-03-03
CISA

Remediate by

2022-03-24
⚠ OVERDUE

CWE

CWE-399
weakness

📈 EPSS exploit probability

6.0%
FIRST EPSS — 30-day probability of exploitation in the wild · band Moderate · higher than 93% of all scored CVEs

⚠ KEV remediation overdue

CISA required federal remediation by 2022-03-24. This exploited vulnerability is past its Binding Operational Directive 22-01 due date — prioritize patch/mitigation and hunt for exploitation.

📄 Description

A vulnerability in the UDP processing code of Cisco IOS and IOS XE could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP packets, causing an interface queue wedge and denial of service.

🛡 Add to case

Attach CVE-2017-6627 (Vulnerability / CVE) and pull all linked entities:
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php