← Back to CVE List
Vulnerability Intelligence Report
Cisco IOS Software for Cisco Industrial Ethernet Switches PROFINET Denial-of-Service Vulnerability

CVE-2017-12235

A vulnerability in the implementation of the PROFINET Discovery and Configuration Protocol (PN-DCP) for Cisco IOS 12.2 through 15.6 could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to the improper parsing of ingress PN-DCP Identify Request packets destined to an affected device. An attacker could exploit this vulnerability by sending a crafted PN-DCP Identify Request packet to an affected device and then continuing to send normal PN-DCP Identify Request packets to the device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition. This vulnerability affects Cisco devices that are configured to process PROFINET messages. Beginning with Cisco IOS Software Release 12.2(52)SE, PROFINET is enabled by default on all the base switch module and expansion-unit Ethernet ports. Cisco Bug IDs: CSCuz47179.

CISA KEV SSVC: Active Exploitation Automatable
CVSS Base Score
7.5
HIGH
Exploitability:3.9
Impact Score:3.6
EPSS Probability:6.94%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Weaknesses (CWE)

Affected Products & Versions

Vendor Product Affected Versions
cisco ios all
cisco industrial_ethernet_2000_16ptc-g-e_switch all
cisco industrial_ethernet_2000_16ptc-g-l_switch all
cisco industrial_ethernet_2000_16ptc-g-nx_switch all
cisco industrial_ethernet_2000_16t67-b_switch all
cisco industrial_ethernet_2000_16t67p-g-e_switch all
cisco industrial_ethernet_2000_16tc-g-e_switch all
cisco industrial_ethernet_2000_16tc-g-l_switch all
cisco industrial_ethernet_2000_16tc-g-n_switch all
cisco industrial_ethernet_2000_16tc-g-x_switch all
cisco industrial_ethernet_2000_16tc-l_switch all
cisco industrial_ethernet_2000_24t67-b_switch all
cisco industrial_ethernet_2000_4s-ts-g-b_switch all
cisco industrial_ethernet_2000_4s-ts-g-l_switch all
cisco industrial_ethernet_2000_4t-b_switch all
cisco industrial_ethernet_2000_4t-g-b_switch all
cisco industrial_ethernet_2000_4t-g-l_switch all
cisco industrial_ethernet_2000_4t-l_switch all
cisco industrial_ethernet_2000_4ts-b_switch all
cisco industrial_ethernet_2000_4ts-g-b_switch all
cisco industrial_ethernet_2000_4ts-g-l_switch all
cisco industrial_ethernet_2000_4ts-l_switch all
cisco industrial_ethernet_2000_8t67-b_switch all
cisco industrial_ethernet_2000_8t67p-g-e_switch all
cisco industrial_ethernet_2000_8tc-b_switch all
cisco industrial_ethernet_2000_8tc-g-b_switch all
cisco industrial_ethernet_2000_8tc-g-e_switch all
cisco industrial_ethernet_2000_8tc-g-l_switch all
cisco industrial_ethernet_2000_8tc-g-n_switch all
cisco industrial_ethernet_2000_8tc-l_switch all
cisco industrial_ethernet_2000_series_firmware 15.2\(5.4.32i\)e2

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

CISA KEV
ACTIVE IN CATALOG
EPSS Score
6.938%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityCisco Systems, Inc. · Hosted Service · USA
Reserved2017-08-03T00:00:00
Published2017-09-28T07:00:00
Patch Date2017-09-28
Last Updated2026-01-12T21:44:45

LINK COPIED TO CLIPBOARD