CVE-2007-4632
- EPSS 0.26%
- Veröffentlicht 31.08.2007 23:17:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Cisco IOS 12.2E, 12.2F, and 12.2S places a "no login" line into the VTY configuration when an administrator makes certain changes to a (1) VTY/AUX or (2) CONSOLE setting on a device without AAA enabled, which allows remote attackers to bypass authent...
- EPSS 26.97%
- Veröffentlicht 20.08.2007 19:17:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Unspecified vulnerability in Cisco IOS 12.0 through 12.4 allows context-dependent attackers to cause a denial of service (device restart and BGP routing table rebuild) via certain regular expressions in a "show ip bgp regexp" command. NOTE: unauthen...
- EPSS 1.18%
- Veröffentlicht 09.08.2007 21:17:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Unspecified vulnerability in Cisco IOS and Cisco IOS XR 12.x up to 12.3, including some versions before 12.3(15) and 12.3(14)T, allows remote attackers to obtain sensitive information (partial packet contents) or cause a denial of service (router or ...
CVE-2007-4286
- EPSS 63.38%
- Veröffentlicht 09.08.2007 21:17:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Buffer overflow in the Next Hop Resolution Protocol (NHRP) functionality in Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (restart) and execute arbitrary code via a crafted NHRP packet.
CVE-2007-4291
- EPSS 4.54%
- Veröffentlicht 09.08.2007 21:17:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service via (1) a malformed MGCP packet, which causes a device hang, aka CSCsf08998; a malformed H.323 packet, which causes a device crash, as identified by (2) CSCsi60004 with ...
CVE-2007-4292
- EPSS 8.22%
- Veröffentlicht 09.08.2007 21:17:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Multiple memory leaks in Cisco IOS 12.0 through 12.4 allow remote attackers to cause a denial of service (device crash) via a malformed SIP packet, aka (1) CSCsf11855, (2) CSCeb21064, (3) CSCse40276, (4) CSCse68355, (5) CSCsf30058, (6) CSCsb24007, an...
CVE-2007-4293
- EPSS 1.91%
- Veröffentlicht 09.08.2007 21:17:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (device crash) via (1) "abnormal" MGCP messages, aka CSCsd81407; and (2) a large facsimile packet, aka CSCej20505.
CVE-2007-4295
- EPSS 2.73%
- Veröffentlicht 09.08.2007 21:17:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Unspecified vulnerability in Cisco IOS 12.0 through 12.4 allows remote attackers to execute arbitrary code via a malformed SIP packet, aka CSCsi80749.
CVE-2007-4263
- EPSS 2.44%
- Veröffentlicht 08.08.2007 23:17:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Unspecified vulnerability in the server side of the Secure Copy (SCP) implementation in Cisco 12.2-based IOS allows remote authenticated users to read, write or overwrite any file on the device's filesystem via unknown vectors.
CVE-2007-2688
- EPSS 4.45%
- Veröffentlicht 16.05.2007 01:19:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The Cisco Intrusion Prevention System (IPS) and IOS with Firewall/IPS Feature Set do not properly handle certain full-width and half-width Unicode character encodings, which might allow remote attackers to evade detection of HTTP traffic.