CVE-2014-3405: Cisco IOS XE

Medium severity, CVSS 4.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Cisco IOS XE enables the IPv6 Routing Protocol for Low-Power and Lossy Networks (aka RPL) on both the Autonomic Control Plane (ACP) and external Autonomic Networking Infrastructure (ANI) interfaces, which allows remote attackers to conduct route-injection attacks via crafted RPL advertisements on an ANI interface, aka Bug ID CSCuq22673.

Affected products

  • Cisco IOS XE: affected versions not specified

Published 2014-10-10. Last modified 2026-06-17.