SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2018-0175

HIGH · CVSS 8 EPSS 3.55% CISA KEV · Actively Exploited

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-03-28 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.0. It affects Cisco. It is listed in CISA's Known Exploited Vulnerabilities catalog, indicating confirmed active exploitation in the wild. It may lead to a denial-of-service condition.

CISA KEV Details

Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.

Ransomware use: Unknown

Added to KEV: 2022-03-03

Required action: Apply updates per vendor instructions.

CVE
CVE-2018-0175
Severity
HIGH
CVSS
8
EPSS
3.55%
Cisco

Original NVD Description

Format String vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. Cisco Bug IDs: CSCvd73664.

Related CVEs

Other vulnerabilities affecting the same vendor(s)