AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2018-0476

MEDIUM · CVSS 5.9 EPSS 13.70% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-10-05 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

Exhibit — Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2018-0476
Severity
MEDIUM
CVSS
5.9
EPSS
13.70%
Cisco

Original Filing — NVD Description

A vulnerability in the Network Address Translation (NAT) Session Initiation Protocol (SIP) Application Layer Gateway (ALG) of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to improper processing of SIP packets in transit while NAT is performed on an affected device. An unauthenticated, remote attacker could exploit this vulnerability by sending crafted SIP packets via UDP port 5060 through an affected device that is performing NAT for SIP packets. A successful exploit could allow an attacker to cause the device to reload, resulting in a denial of service (DoS) condition.