CVE-2012-3946: Cisco IOS
Medium severity, CVSS 5.0. EPSS: 1.9% chance of exploitation in the next 30 days.
Cisco IOS before 15.3(2)S allows remote attackers to bypass interface ACL restrictions in opportunistic circumstances by sending IPv6 packets in an unspecified scenario in which expected packet drops do not occur for "a small percentage" of the packets, aka Bug ID CSCty73682.
Affected products
- Cisco IOS: up to and including 15.3
Published 2014-04-24. Last modified 2026-06-16.