AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2014-3262

MEDIUM · CVSS 4.3 EPSS 1.55%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-05-16 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.3. It affects Cisco. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2014-3262
Severity
MEDIUM
CVSS
4.3
EPSS
1.55%
Cisco

Original NVD Description

The Locator/ID Separation Protocol (LISP) implementation in Cisco IOS 15.3(3)S and earlier and IOS XE does not properly validate parameters in ITR control messages, which allows remote attackers to cause a denial of service (CEF outage and packet drops) via malformed messages, aka Bug ID CSCun73782.