AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2010-3035

HIGH · CVSS 7.5 EPSS 5.56% CISA KEV · Actively Exploited

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-08-30 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. It affects Cisco. It is listed in CISA's Known Exploited Vulnerabilities catalog, indicating confirmed active exploitation in the wild. It may be remotely exploitable. It may lead to a denial-of-service condition.

CISA KEV Details

Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.

Ransomware use: Unknown

Added to KEV: 2022-03-25

Required action: Apply updates per vendor instructions.

CVE
CVE-2010-3035
Severity
HIGH
CVSS
7.5
EPSS
5.56%
Cisco

Original NVD Description

Cisco IOS XR 3.4.0 through 3.9.1, when BGP is enabled, does not properly handle unrecognized transitive attributes, which allows remote attackers to cause a denial of service (peering reset) via a crafted prefix announcement, as demonstrated in the wild in August 2010 with attribute type code 99, aka Bug ID CSCti62211.