CVE-2013-1146: Cisco IOS
High severity, CVSS 7.8. EPSS: 1.3% chance of exploitation in the next 30 days.
The Smart Install client functionality in Cisco IOS 12.2 and 15.0 through 15.3 on Catalyst switches allows remote attackers to cause a denial of service (device reload) via crafted image list parameters in Smart Install packets, aka Bug ID CSCub55790.
Affected products
- Cisco IOS: version 12.2 only; version 15.0 only; version 15.0(1)se only; version 15.1 only; version 15.2 only; version 15.3 only
Published 2013-03-28. Last modified 2026-06-16.