CVE Feed

    Dashboard / CVE / CVE-2017-3752

    CVE-2017-3752

    An industry-wide vulnerability has been identified in the implementation of the Open Shortest Path First (OSPF) routing protocol used on some Lenovo switches. Exploitation of these implementation flaws may result in attackers being able to erase or alter the routing tables of one or many routers, switches, or other devices that support OSPF within a routing domain.

    Published:Aug 9, 2017
    Last Modified:Apr 20, 2025
    EPS:Aug 9, 2017
    EPSS Score:0.00146
    CVSS Score:8.2

    Affected Products

    Vendor
    Ibm
    Product
    1\
    Vendor
    Ibm
    Product
    1g L2-7 Slb
    Vendor
    Ibm
    Product
    Bladecenter
    Vendor
    Ibm
    Product
    En2092 1gb Firmware
    Vendor
    Ibm
    Product
    Fabric Cn4093 10gb Firmware
    Vendor
    Ibm
    Product
    Fabric En4093\/en4093r 10gb Firmware
    Vendor
    Ibm
    Product
    Flex System
    Vendor
    Ibm
    Product
    G8052 Firmware
    Vendor
    Ibm
    Product
    G8124 Firmware
    Vendor
    Ibm
    Product
    G8124e Firmware
    Vendor
    Ibm
    Product
    G8264 Firmware
    Vendor
    Ibm
    Product
    G8264cs Firmware
    Vendor
    Ibm
    Product
    G8264t Firmware
    Vendor
    Ibm
    Product
    G8316 Firmware
    Vendor
    Ibm
    Product
    G8332 Firmware
    Vendor
    Ibm
    Product
    Layer 2\/3 Copper Firmware
    Vendor
    Ibm
    Product
    Rackswitch
    Vendor
    Ibm
    Product
    Virtual Fabric 10gb
    Vendor
    Lenovo
    Product
    Fabric Cn4093 10gb Firmware
    Vendor
    Lenovo
    Product
    Fabric En4093r 10gb Firmware
    Vendor
    Lenovo
    Product
    Flex System
    Vendor
    Lenovo
    Product
    G8052 Firmware
    Vendor
    Lenovo
    Product
    G8124e Firmware
    Vendor
    Lenovo
    Product
    G8264 Firmware
    Vendor
    Lenovo
    Product
    G8264cs Firmware
    Vendor
    Lenovo
    Product
    G8272 Firmware
    Vendor
    Lenovo
    Product
    G8296 Firmware
    Vendor
    Lenovo
    Product
    G8332 Firmware
    Vendor
    Lenovo
    Product
    Rackswitch
    Vendor
    Lenovo
    Product
    Si4091 Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High