HIGH · 7.8

CVE-2002-2208

Extended Interior Gateway Routing Protocol (EIGRP), as implemented in Cisco IOS 11.3 through 12.2 and other products, allows remote attackers to cause a denial of service (flood) by sending a large nu...

Vulnerability Description

Extended Interior Gateway Routing Protocol (EIGRP), as implemented in Cisco IOS 11.3 through 12.2 and other products, allows remote attackers to cause a denial of service (flood) by sending a large number of spoofed EIGRP neighbor announcements, which results in an ARP storm on the local network.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
Extended Interior Gateway Routing ProtocolExtended Interior Gateway Routing Protocol1.2
CiscoIos11.3

References

FAQ

What is CVE-2002-2208?

CVE-2002-2208 is a vulnerability with a CVSS score of 7.8 (HIGH). Extended Interior Gateway Routing Protocol (EIGRP), as implemented in Cisco IOS 11.3 through 12.2 and other products, allows remote attackers to cause a denial of service (flood) by sending a large nu...

How severe is CVE-2002-2208?

CVE-2002-2208 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2002-2208?

Check the references section above for vendor advisories and patch information. Affected products include: Extended Interior Gateway Routing Protocol Extended Interior Gateway Routing Protocol, Cisco Ios.