CVE-2017-12233 Details
Description
Multiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature in Cisco IOS 12.4 through 15.6 could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerabilities are due to the improper parsing of crafted CIP packets destined to an affected device. An attacker could exploit these vulnerabilities by sending crafted CIP packets to be processed by an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition. Cisco Bug IDs: CSCuz95334.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Nov 8, 2024References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-12233 | CISA-ADP | US Government Resource |
| https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-cip | CVE | Vendor Advisory |
| http://www.securityfocus.com/bid/101038 | CVE | Broken LinkThird Party AdvisoryVDB Entry |
| http://www.securitytracker.com/id/1039459 | CVE | Broken LinkThird Party AdvisoryVDB Entry |
| https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-cip | [email protected] | Vendor Advisory |
| http://www.securityfocus.com/bid/101038 | [email protected] | Broken LinkThird Party AdvisoryVDB Entry |
| http://www.securitytracker.com/id/1039459 | [email protected] | Broken LinkThird Party AdvisoryVDB Entry |
This CVE is in CISA's Known Exploited Vulnerabilities Catalog
Reference CISA's BOD 22-01 and Known Exploited Vulnerabilities Catalog for further guidance and requirements.
| Vulnerability Name | Date Added | Due Date | Required Action |
|---|---|---|---|
| Cisco IOS Software Common Industrial Protocol Request Denial-of-Service Vulnerability | Mar 3, 2022 | Mar 24, 2022 | Apply updates per vendor instructions. |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-noinfo | Insufficient Information to Classify Weakness | [email protected] |
| CWE-20 | Improper Input Validation | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| cisco ios | >= 12.4, <= 15.6 |
CPE
Remediation
| |
| cisco 1000 integrated services router | All versions |
CPE
Remediation
| |
| cisco 1100-4g/6g integrated services router | All versions |
CPE
Remediation
| |
| cisco 1100-4g integrated services router | All versions |
CPE
Remediation
| |
| cisco 1100-4gltegb integrated services router | All versions |
CPE
Remediation
| |
| cisco 1100-4gltena integrated services router | All versions |
CPE
Remediation
| |
| cisco 1100-4p | All versions |
CPE
Remediation
| |
| cisco 1100-4p integrated services router | All versions |
CPE
Remediation
| |
| cisco 1100-6g integrated services router | All versions |
CPE
Remediation
| |
| cisco 1100-8p | All versions |
CPE
Remediation
| |
| cisco 1100-8p integrated services router | All versions |
CPE
Remediation
| |
| cisco 1100-lte integrated services router | All versions |
CPE
Remediation
| |
| cisco 1100 integrated services router | All versions |
CPE
Remediation
| |
| cisco 1100 terminal services gateways | All versions |
CPE
Remediation
| |
| cisco 1101-4p | All versions |
CPE
Remediation
| |
| cisco 1101-4p integrated services router | All versions |
CPE
Remediation
| |
| cisco 1101 integrated services router | All versions |
CPE
Remediation
| |
| cisco 1109-2p | All versions |
CPE
Remediation
| |
| cisco 1109-4p | All versions |
CPE
Remediation
| |
| cisco 1111-4pwe | All versions |
CPE
Remediation
| |
| cisco 1111-8pwb | All versions |
CPE
Remediation
| |
| cisco 1111x-8p | All versions |
CPE
Remediation
| |
| cisco 1113-8plteeawe | All versions |
CPE
Remediation
| |
| cisco 1113-8pmwe | All versions |
CPE
Remediation
| |
| cisco 1113-8pwe | All versions |
CPE
Remediation
| |
| cisco 1116-4plteeawe | All versions |
CPE
Remediation
| |
| cisco 1116-4pwe | All versions |
CPE
Remediation
| |
| cisco 1117-4plteeawe | All versions |
CPE
Remediation
| |
| cisco 1117-4pmlteeawe | All versions |
CPE
Remediation
| |
| cisco 1117-4pmwe | All versions |
CPE
Remediation
| |
| cisco 1117-4pwe | All versions |
CPE
Remediation
| |
| cisco 1120 | All versions |
CPE
Remediation
| |
| cisco 1120 connected grid router | All versions |
CPE
Remediation
| |
| cisco 1120 integrated services router | All versions |
CPE
Remediation
| |
| cisco 1131 integrated services router | All versions |
CPE
Remediation
| |
| cisco 1160 integrated services router | All versions |
CPE
Remediation
| |
| cisco 1801 integrated service router | All versions |
CPE
Remediation
| |
| cisco 1802 integrated service router | All versions |
CPE
Remediation
| |
| cisco 1803 integrated service router | All versions |
CPE
Remediation
| |
| cisco 1811 integrated service router | All versions |
CPE
Remediation
| |
| cisco 1812 integrated service router | All versions |
CPE
Remediation
| |
| cisco 1841 integrated service router | All versions |
CPE
Remediation
| |
| cisco 1861 integrated service router | All versions |
CPE
Remediation
| |
| cisco 1905 integrated services router | All versions |
CPE
Remediation
| |
| cisco 1906c integrated services router | All versions |
CPE
Remediation
| |
| cisco 1921 integrated services router | All versions |
CPE
Remediation
| |
| cisco 1941 integrated services router | All versions |
CPE
Remediation
| |
| cisco 1941w integrated services router | All versions |
CPE
Remediation
| |
| cisco catalyst ie3200 rugged switch | All versions |
CPE
Remediation
| |
| cisco catalyst ie3300 rugged switch | All versions |
CPE
Remediation
| |
| cisco catalyst ie3400 heavy duty switch | All versions |
CPE
Remediation
| |
| cisco catalyst ie3400 rugged switch | All versions |
CPE
Remediation
| |
| cisco catalyst ie9300 | All versions |
CPE
Remediation
| |
| cisco esr-6300-con-k9 | All versions |
CPE
Remediation
| |
| cisco esr-6300-ncp-k9 | All versions |
CPE
Remediation
| |
Change History
14 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Apr 21, 2026 | Modified Analysis | [email protected] |
| Jan 12, 2026 | CVE Modified | CISA-ADP |
| Oct 22, 2025 | CVE Modified | CISA-ADP |
| Oct 21, 2025 | CVE Modified | CISA-ADP |
| Oct 21, 2025 | CVE Modified | CISA-ADP |
| Jan 27, 2025 | Modified Analysis | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| Jul 16, 2024 | Modified Analysis | [email protected] |
| May 14, 2024 | CVE Modified | [email protected] |
| Oct 9, 2019 | CVE Modified | [email protected] |
| Oct 6, 2017 | Initial Analysis | [email protected] |
| Sep 30, 2017 | CVE Modified | [email protected] |