Vulnerabilities > Cisco > IOS > 12.0s

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-1021 Resource Management Errors vulnerability in Cisco IOS
Memory leak in Secure Shell (SSH) in Cisco IOS 12.0 through 12.3, when authenticating against a TACACS+ server, allows remote attackers to cause a denial of service (memory consumption) via an incorrect username or password.
network
cisco CWE-399
7.1
2005-05-02 CVE-2005-1020 Improper Authentication vulnerability in Cisco IOS
Secure Shell (SSH) 2 in Cisco IOS 12.0 through 12.3 allows remote attackers to cause a denial of service (device reload) (1) via a username that contains a domain name when using a TACACS+ server to authenticate, (2) when a new SSH session is in the login phase and a currently logged in user issues a send command, or (3) when IOS is logging messages and an SSH session is terminated while the server is sending data.
network
cisco CWE-287
7.1
2005-05-02 CVE-2005-0196 Unspecified vulnerability in Cisco IOS
Cisco IOS 12.0 through 12.3YL, with BGP enabled and running the bgp log-neighbor-changes command, allows remote attackers to cause a denial of service (device reload) via a malformed BGP packet.
network
low complexity
cisco
5.0
2005-05-02 CVE-2005-0195 Unspecified vulnerability in Cisco IOS
Cisco IOS 12.0S through 12.3YH allows remote attackers to cause a denial of service (device restart) via a crafted IPv6 packet.
network
low complexity
cisco
5.0
2004-12-31 CVE-2004-1775 Unspecified vulnerability in Cisco Catos and IOS
Cisco VACM (View-based Access Control MIB) for Catalyst Operating Software (CatOS) 5.5 and 6.1 and IOS 12.0 and 12.1 allows remote attackers to read and modify device configuration via the read-write community string.
network
low complexity
cisco
5.0
2004-12-31 CVE-2004-1464 Remote Denial of Service vulnerability in Cisco IOS Telnet Service
Cisco IOS 12.2(15) and earlier allows remote attackers to cause a denial of service (refused VTY (virtual terminal) connections), via a crafted TCP connection to the Telnet or reverse Telnet port.
network
low complexity
cisco
5.0
2004-08-06 CVE-2004-0589 Unspecified vulnerability in Cisco IOS
Cisco IOS 11.1(x) through 11.3(x) and 12.0(x) through 12.2(x), when configured for BGP routing, allows remote attackers to cause a denial of service (device reload) via malformed BGP (1) OPEN or (2) UPDATE messages.
network
cisco
4.3
2004-07-27 CVE-2004-0714 Denial Of Service vulnerability in Cisco products
Cisco Internetwork Operating System (IOS) 12.0S through 12.3T attempts to process SNMP solicited operations on improper ports (UDP 162 and a randomly chosen UDP port), which allows remote attackers to cause a denial of service (device reload and memory corruption).
network
low complexity
cisco
5.0
2004-02-17 CVE-2004-0054 Unspecified vulnerability in Cisco IOS
Multiple vulnerabilities in the H.323 protocol implementation for Cisco IOS 11.3T through 12.2T allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.
network
low complexity
cisco
7.5
2003-12-31 CVE-2003-1398 Information Exposure vulnerability in Cisco IOS
Cisco IOS 12.0 through 12.2, when IP routing is disabled, accepts false ICMP redirect messages, which allows remote attackers to cause a denial of service (network routing modification).
network
cisco CWE-200
critical
9.3