Cisco IOS XE mDNS Manipulation (CSCun64867)

This script is Copyright (C) 2014-2017 Tenable Network Security, Inc.

Synopsis :

The remote device is affected by a manipulation vulnerability.

Description :

According to its self-reported version, the remote IOS XE device is
affected by a manipulation vulnerability.

A flaw exists due to unconstrained autonomic networking with mDNS
(multicast Domain Name System). This could allow a remote attacker to
read or overwrite autonomic networking services.

See also :

Solution :

Upgrade to the relevant fixed version referenced in Cisco bug ID

Risk factor :

Medium / CVSS Base Score : 4.8
CVSS Temporal Score : 3.8
Public Exploit Available : true

Family: CISCO

Nessus Plugin ID: 76972 ()

Bugtraq ID: 68021

CVE ID: CVE-2014-3290

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now