CVE-2014-2141: Cisco Ons 15454 System Software
Medium severity, CVSS 4.0. EPSS: 1.4% chance of exploitation in the next 30 days.
The session-termination functionality on Cisco ONS 15454 controller cards with software 9.6 and earlier does not initialize an unspecified pointer, which allows remote authenticated users to cause a denial of service (card reset) via crafted session-close actions, aka Bug ID CSCug97416.
Affected products
- Cisco Cisco Ons 15454 System Software: up to and including 9.6; version 9.0 only; version 9.1 only; version 9.2 only; version 9.2.1 only; version 9.2.2 only; …
- Cisco Ons 15454
Published 2014-04-10. Last modified 2026-06-17.