CVE-2001-0537
- EPSS 93.7%
- Veröffentlicht 21.07.2001 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when local authorization is being used, by specifying a high access level in the URL.
- EPSS 0.24%
- Veröffentlicht 12.07.2001 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
PPTP implementation in Cisco IOS 12.1 and 12.2 allows remote attackers to cause a denial of service (crash) via a malformed packet.
CVE-2001-0288
- EPSS 3.98%
- Veröffentlicht 03.05.2001 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Cisco switches and routers running IOS 12.1 and earlier produce predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.
CVE-2000-0368
- EPSS 0.1%
- Veröffentlicht 12.03.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Classic Cisco IOS 9.1 and later allows attackers with access to the login prompt to obtain portions of the command history of previous users, which may allow the attacker to access sensitive data.
- EPSS 0.61%
- Veröffentlicht 28.02.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Cisco IOS 12.0(5)XU through 12.1(2) allows remote attackers to read system administration and topology information via an "snmp-server host" command, which creates a readable "community" community string if one has not been previously created.
- EPSS 30.36%
- Veröffentlicht 19.12.2000 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The HTTP server in Cisco IOS 12.0 through 12.1 allows local users to cause a denial of service (crash and reload) via a URL containing a "?/" string.
- EPSS 0.43%
- Veröffentlicht 20.10.2000 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Cisco Gigabit Switch Routers (GSR) with Fast Ethernet / Gigabit Ethernet cards, from IOS versions 11.2(15)GS1A up to 11.2(19)GS0.2 and some versions of 12.0, do not properly handle line card failures, which allows remote attackers to bypass ACLs or f...
- EPSS 1.43%
- Veröffentlicht 30.05.2000 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in Cisco TACACS+ tac_plus server allows remote attackers to cause a denial of service via a malformed packet with a long length field.
CVE-2000-0345
- EPSS 0.12%
- Veröffentlicht 03.05.2000 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The on-line help system options in Cisco routers allows non-privileged users without "enabled" access to obtain sensitive information via the show command.
CVE-2000-0380
- EPSS 85.12%
- Veröffentlicht 26.04.2000 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string.