Vulnerabilities > Cisco > Intrusion Prevention System

DATE CVE VULNERABILITY TITLE RISK
2012-09-16 CVE-2012-3901 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cisco products
The updateTime function in sensorApp on Cisco IPS 4200 series sensors 7.0 and 7.1 allows remote attackers to cause a denial of service (process crash and traffic-inspection outage) via network traffic, aka Bug ID CSCta96144.
network
low complexity
cisco CWE-119
5.0
2012-09-16 CVE-2012-3899 Resource Management Errors vulnerability in Cisco products
sensorApp on Cisco IPS 4200 series sensors 6.0, 6.2, and 7.0 does not properly allocate memory, which allows remote attackers to cause a denial of service (memory corruption and process crash, and traffic-inspection outage) via network traffic, aka Bug ID CSCtn23051.
network
low complexity
cisco CWE-399
5.0
2012-05-03 CVE-2011-4022 Improper Authentication vulnerability in Cisco Intrusion Prevention System 7.0/7.1
The sensor in Cisco Intrusion Prevention System (IPS) 7.0 and 7.1 allows remote attackers to cause a denial of service (file-handle exhaustion and mainApp hang) by making authentication attempts that exceed the configured limit, aka Bug ID CSCto51204.
network
low complexity
cisco CWE-287
5.0
2008-06-18 CVE-2008-2060 Configuration vulnerability in Cisco Intrusion Prevention System 5.1/6.0
Unspecified vulnerability in Cisco Intrusion Prevention System (IPS) 5.x before 5.1(8)E2 and 6.x before 6.0(5)E2, when inline mode and jumbo Ethernet support are enabled, allows remote attackers to cause a denial of service (panic), and possibly bypass intended restrictions on network traffic, via a "specific series of jumbo Ethernet frames."
network
cisco CWE-16
7.8