CVE-2015-8139
Description
ntpq in NTP before 4.2.8p7 allows remote attackers to obtain origin timestamps and then impersonate peers via unspecified vectors.
Risk Information
Base Score
5.3
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
EPSS Score
Exploitation Probability
30.064
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Multiple Vulnerabilities in Network Time Protocol Daemon Affecting Cisco Products: January 2016 For Cisco IOS XE Software | NCM |
| Multiple Vulnerabilities in Network Time Protocol Daemon Affecting Cisco Products: January 2016 For Cisco NX-OS Software | NCM |
| Improper Access Control Vulnerability (CVE-2015-8139) | NCM |
Patch Details
Click to see the patches provided by ManageEngine for this CVE
| Patch ID | Patch Description |
|---|---|
| PATCH-1706107 | Security Update for Cisco IOS XE Software 5.2(1)SV5(1.3a) |
| PATCH-1706149 | Security Update for Cisco NX-OS Software 4.1(3a)UCSM |
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234