Vulnerabilities > Cisco > Catalyst 4948

DATE CVE VULNERABILITY TITLE RISK
2017-03-17 CVE-2017-3881 Improper Input Validation vulnerability in Cisco IOS and IOS XE
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device or remotely execute code with elevated privileges.
network
low complexity
cisco CWE-20
critical
10.0
2013-02-13 CVE-2013-1100 Resource Management Errors vulnerability in Cisco IOS
The HTTP server in Cisco IOS on Catalyst switches does not properly handle TCP socket events, which allows remote attackers to cause a denial of service (device crash) via crafted packets on TCP port (1) 80 or (2) 443, aka Bug ID CSCuc53853.
network
high complexity
cisco CWE-399
5.4
2005-12-15 CVE-2005-4258 Cisco Catalyst Switches LanD Packet Denial Of Service vulnerability in Multiple
Unspecified Cisco Catalyst Switches allow remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LanD).
network
low complexity
cisco
7.8