Vulnerabilities > Cisco > IOS > 12.2srb

DATE CVE VULNERABILITY TITLE RISK
2010-09-23 CVE-2010-2830 Unspecified vulnerability in Cisco IOS and IOS XE
The IGMPv3 implementation in Cisco IOS 12.2, 12.3, 12.4, and 15.0 and IOS XE 2.5.x before 2.5.2, when PIM is enabled, allows remote attackers to cause a denial of service (device reload) via a malformed IGMP packet, aka Bug ID CSCte14603.
network
cisco
7.1
2010-09-23 CVE-2010-2829 H.323 Unspecified Denial of Service vulnerability in Cisco IOS XE
Unspecified vulnerability in the H.323 implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 2.5.x before 2.5.2 and 2.6.x before 2.6.1, allows remote attackers to cause a denial of service (traceback and device reload) via crafted H.323 packets, aka Bug ID CSCtd33567.
network
low complexity
cisco
7.8
2010-09-23 CVE-2010-2828 H.323 Unspecified Denial of Service vulnerability in Cisco IOS XE
Unspecified vulnerability in the H.323 implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 2.5.x before 2.5.2 and 2.6.x before 2.6.1, allows remote attackers to cause a denial of service (device reload) via crafted H.323 packets, aka Bug ID CSCtc73759.
network
low complexity
cisco
7.8
2010-03-25 CVE-2010-0576 Denial of Service vulnerability in Cisco IOS Multiprotocol Label Switching (MPLS) Malformed Packet
Unspecified vulnerability in Cisco IOS 12.0 through 12.4, IOS XE 2.1.x through 2.3.x before 2.3.2, and IOS XR 3.2.x through 3.4.3, when Multiprotocol Label Switching (MPLS) and Label Distribution Protocol (LDP) are enabled, allows remote attackers to cause a denial of service (device reload or process restart) via a crafted LDP packet, aka Bug IDs CSCsz45567 and CSCsj25893.
network
low complexity
cisco
7.8
2009-09-28 CVE-2009-2873 Unspecified vulnerability in Cisco IOS
Cisco IOS 12.0 through 12.4, when IP-based tunnels and the Cisco Express Forwarding feature are enabled, allows remote attackers to cause a denial of service (device reload) via malformed packets, aka Bug ID CSCsx70889.
network
cisco
7.1
2009-09-28 CVE-2009-2872 Unspecified vulnerability in Cisco IOS
Cisco IOS 12.0 through 12.4, when IP-based tunnels and the Cisco Express Forwarding feature are enabled, allows remote attackers to cause a denial of service (device reload) via a malformed packet that is not properly handled during switching from one tunnel to a second tunnel, aka Bug IDs CSCsh97579 and CSCsq31776.
network
low complexity
cisco
6.8
2009-09-28 CVE-2009-2868 Unspecified vulnerability in Cisco IOS
Unspecified vulnerability in Cisco IOS 12.2 through 12.4, when certificate-based authentication is enabled for IKE, allows remote attackers to cause a denial of service (Phase 1 SA exhaustion) via crafted requests, aka Bug IDs CSCsy07555 and CSCee72997.
network
low complexity
cisco
7.8
2009-09-28 CVE-2009-2863 Improper Authentication vulnerability in Cisco IOS
Race condition in the Firewall Authentication Proxy feature in Cisco IOS 12.0 through 12.4 allows remote attackers to bypass authentication, or bypass the consent web page, via a crafted request, aka Bug ID CSCsy15227.
network
cisco CWE-287
7.1
2009-08-27 CVE-2009-2051 Unspecified vulnerability in Cisco IOS and Unified Communications Manager
Cisco IOS 12.2 through 12.4 and 15.0 through 15.1, Cisco IOS XE 2.5.x and 2.6.x before 2.6.1, and Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x, 5.x before 5.1(3g), 6.x before 6.1(4), and 7.x before 7.1(2) allow remote attackers to cause a denial of service (device reload or voice-services outage) via a malformed SIP INVITE message that triggers an improper call to the sipSafeStrlen function, aka Bug IDs CSCsz40392 and CSCsz43987.
network
low complexity
cisco
7.8
2009-03-27 CVE-2009-0637 Permissions, Privileges, and Access Controls vulnerability in Cisco IOS
The SCP server in Cisco IOS 12.2 through 12.4, when Role-Based CLI Access is enabled, does not enforce the CLI view configuration for file transfers, which allows remote authenticated users with an attached CLI view to (1) read or (2) overwrite arbitrary files via an SCP command.
network
high complexity
cisco CWE-264
7.1