High severity7.5NVD Advisory· Published Sep 25, 2019· Updated Jun 17, 2026
CVE-2019-12655
CVE-2019-12655
Description
A vulnerability in the FTP application layer gateway (ALG) functionality used by Network Address Translation (NAT), NAT IPv6 to IPv4 (NAT64), and the Zone-Based Policy Firewall (ZBFW) in Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to a buffer overflow that occurs when an affected device inspects certain FTP traffic. An attacker could exploit this vulnerability by performing a specific FTP transfer through the device. A successful exploit could allow the attacker to cause the device to reload.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- Range: unspecified
cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*range: >=3.16.8s,<16.3.8
- cpe:2.3:o:cisco:ios:16.6.4:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ios:16.6.5:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ios:16.9.1:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ios:16.9.2:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.