High severity8.6NVD Advisory· Published Sep 24, 2020· Updated Jun 17, 2026
CVE-2020-3510
CVE-2020-3510
Description
A vulnerability in the Umbrella Connector component of Cisco IOS XE Software for Cisco Catalyst 9200 Series Switches could allow an unauthenticated, remote attacker to trigger a reload, resulting in a denial of service condition on an affected device. The vulnerability is due to insufficient error handling when parsing DNS requests. An attacker could exploit this vulnerability by sending a series of malicious DNS requests to an Umbrella Connector client interface of an affected device. A successful exploit could allow the attacker to cause a crash of the iosd process, which triggers a reload of the affected device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:o:cisco:ios_xe:16.12.1:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:cisco:ios_xe:16.12.1:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ios_xe:16.12.2:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ios_xe:17.1.1:*:*:*:*:*:*:*
- Range: n/a
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.