CVE-2009-0637
- EPSS 1.28%
- Published 27.03.2009 16:30:02
- Last modified 09.04.2025 00:30:58
The SCP server in Cisco IOS 12.2 through 12.4, when Role-Based CLI Access is enabled, does not enforce the CLI view configuration for file transfers, which allows remote authenticated users with an attached CLI view to (1) read or (2) overwrite arbit...
CVE-2009-0626
- EPSS 1.18%
- Published 27.03.2009 16:30:01
- Last modified 09.04.2025 00:30:58
The SSLVPN feature in Cisco IOS 12.3 through 12.4 allows remote attackers to cause a denial of service (device reload or hang) via a crafted HTTPS packet.
CVE-2009-0629
- EPSS 0.93%
- Published 27.03.2009 16:30:01
- Last modified 09.04.2025 00:30:58
The (1) Airline Product Set (aka ALPS), (2) Serial Tunnel Code (aka STUN), (3) Block Serial Tunnel Code (aka BSTUN), (4) Native Client Interface Architecture (NCIA) support, (5) Data-link switching (aka DLSw), (6) Remote Source-Route Bridging (RSRB),...
CVE-2009-0631
- EPSS 1.81%
- Published 27.03.2009 15:16:24
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in Cisco IOS 12.0 through 12.4, when configured with (1) IP Service Level Agreements (SLAs) Responder, (2) Session Initiation Protocol (SIP), (3) H.323 Annex E Call Signaling Transport, or (4) Media Gateway Control Protocol ...
CVE-2008-3821
- EPSS 10.64%
- Published 16.01.2009 21:30:03
- Last modified 09.04.2025 00:30:58
Multiple cross-site scripting (XSS) vulnerabilities in the HTTP server in Cisco IOS 11.0 through 12.4 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to the ping program or (2) unspecified other aspects of the U...
CVE-2008-5230
- EPSS 0.89%
- Published 25.11.2008 23:30:00
- Last modified 09.04.2025 00:30:58
The Temporal Key Integrity Protocol (TKIP) implementation in unspecified Cisco products and other vendors' products, as used in WPA and WPA2 on Wi-Fi networks, has insufficient countermeasures against certain crafted and replayed packets, which makes...
CVE-2008-4963
- EPSS 0.91%
- Published 06.11.2008 15:55:51
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in the VLAN Trunking Protocol (VTP) implementation on Cisco IOS and CatOS, when the VTP operating mode is not transparent, allows remote attackers to cause a denial of service (device reload or hang) via a crafted VTP packet...
CVE-2008-4609
- EPSS 0.48%
- Published 20.10.2008 17:59:26
- Last modified 09.04.2025 00:30:58
The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vect...
CVE-2008-3798
- EPSS 1.26%
- Published 26.09.2008 16:21:44
- Last modified 09.04.2025 00:30:58
Cisco IOS 12.4 allows remote attackers to cause a denial of service (device crash) via a normal, properly formed SSL packet that occurs during termination of an SSL session.
CVE-2008-3799
- EPSS 1.26%
- Published 26.09.2008 16:21:44
- Last modified 09.04.2025 00:30:58
Memory leak in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4, when VoIP is configured, allows remote attackers to cause a denial of service (memory consumption and voice-service outage) via unspecified valid SIP ...