Vulnerabilities > Cisco > Catalyst 6500

DATE CVE VULNERABILITY TITLE RISK
2010-08-09 CVE-2010-2819 Improper Input Validation vulnerability in Cisco products
Unspecified vulnerability in the SunRPC inspection feature on the Cisco Firewall Services Module (FWSM) with software 3.1 before 3.1(17.2), 3.2 before 3.2(16.1), 4.0 before 4.0(10.1), and 4.1 before 4.1(1.1) for Catalyst 6500 series switches and 7600 series routers allows remote attackers to cause a denial of service (device reload) via crafted SunRPC messages, aka Bug ID CSCte61622.
network
low complexity
cisco CWE-20
7.8
2010-08-09 CVE-2010-2818 Unspecified vulnerability in Cisco products
Unspecified vulnerability in the SunRPC inspection feature on the Cisco Firewall Services Module (FWSM) with software 3.1 before 3.1(17.2), 3.2 before 3.2(16.1), 4.0 before 4.0(10.1), and 4.1 before 4.1(1.1) for Catalyst 6500 series switches and 7600 series routers allows remote attackers to cause a denial of service (device reload) via crafted SunRPC messages, aka Bug ID CSCte61710.
network
low complexity
cisco
7.8
2010-02-19 CVE-2010-0151 Remote Denial of Service vulnerability in Cisco Firewall Services Module 4.0/4.0(4)/4.0(6)
The Cisco Firewall Services Module (FWSM) 4.0 before 4.0(8), as used in for the Cisco Catalyst 6500 switches, Cisco 7600 routers, and ASA 5500 Adaptive Security Appliances, allows remote attackers to cause a denial of service (crash) via a malformed Skinny Client Control Protocol (SCCP) message.
network
low complexity
cisco
7.8
2009-08-21 CVE-2009-0638 Remote Denial of Service vulnerability in Cisco Firewall Services Module ICMP Packet
The Cisco Firewall Services Module (FWSM) 2.x, 3.1 before 3.1(16), 3.2 before 3.2(13), and 4.0 before 4.0(6) for Cisco Catalyst 6500 switches and Cisco 7600 routers allows remote attackers to cause a denial of service (traffic-handling outage) via a series of malformed ICMP messages.
network
low complexity
cisco
7.8
2009-02-26 CVE-2009-0742 Cryptographic Issues vulnerability in Cisco ACE 4710 and Application Control Engine Module
The username command in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers and Cisco ACE 4710 Application Control Engine Appliance stores a cleartext password by default, which allows context-dependent attackers to obtain sensitive information.
network
low complexity
cisco CWE-310
7.8
2009-02-26 CVE-2009-0624 Remote vulnerability in Multiple Cisco ACE Products
Unspecified vulnerability in the SNMPv2c implementation in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers before A2(1.3) and Cisco ACE 4710 Application Control Engine Appliance before A3(2.1) allows remote attackers to cause a denial of service (device reload) via a crafted SNMPv1 packet.
network
low complexity
cisco
6.8
2009-02-26 CVE-2009-0622 Remote vulnerability in Multiple Cisco ACE Products
Unspecified vulnerability in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers before A2(1.2) and Cisco ACE 4710 Application Control Engine Appliance before A1(8a) allows remote authenticated users to execute arbitrary operating-system commands through a command line interface (CLI).
network
low complexity
cisco
critical
9.0
2008-03-27 CVE-2008-0537 Unspecified vulnerability in Cisco Route Switch Processor and Supervisor Engine
Unspecified vulnerability in the Supervisor Engine 32 (Sup32), Supervisor Engine 720 (Sup720), and Route Switch Processor 720 (RSP720) for multiple Cisco products, when using Multi Protocol Label Switching (MPLS) VPN and OSPF sham-link, allows remote attackers to cause a denial of service (blocked queue, device restart, or memory leak) via unknown vectors.
network
cisco
7.1
2007-12-20 CVE-2007-5584 Denial Of Service vulnerability in Cisco Firewall Services Module 3.2(3)
Unspecified vulnerability in Cisco Firewall Services Module (FWSM) 3.2(3) allows remote attackers to cause a denial of service (device reload) via crafted "data in the control-plane path with Layer 7 Application Inspections."
network
low complexity
cisco
7.8
2007-09-27 CVE-2007-5134 Permissions, Privileges, and Access Controls vulnerability in Cisco products
Cisco Catalyst 6500 and Cisco 7600 series devices use 127/8 IP addresses for Ethernet Out-of-Band Channel (EOBC) internal communication, which might allow remote attackers to send packets to an interface for which network exposure was unintended.
network
low complexity
cisco CWE-264
5.0