Vulnerabilities > Cisco > IOS > 12.3
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2014-04-23 | CVE-2012-3918 | Denial-Of-Service vulnerability in Cisco IOS Cisco IOS before 15.3(1)T on Cisco 2900 devices, when a VWIC2-2MFT-T1/E1 card is configured for TDM/HDLC mode, allows remote attackers to cause a denial of service (serial-interface outage) via certain Frame Relay traffic, aka Bug ID CSCub13317. network cisco | 4.3 |
2014-04-04 | CVE-2014-2143 | Denial of Service vulnerability in Cisco IOS XE The IKE implementation in Cisco IOS 15.4(1)T and earlier and IOS XE allows remote attackers to cause a denial of service (security-association drop) via crafted Main Mode packets, aka Bug ID CSCun31021. | 5.0 |
2014-03-27 | CVE-2014-2111 | Improper Input Validation vulnerability in Cisco IOS The Application Layer Gateway (ALG) module in Cisco IOS 12.2 through 12.4 and 15.0 through 15.4, when NAT is used, allows remote attackers to cause a denial of service (device reload) via crafted DNS packets, aka Bug ID CSCue00996. | 7.1 |
2014-03-27 | CVE-2014-2109 | Improper Input Validation vulnerability in Cisco IOS The TCP Input module in Cisco IOS 12.2 through 12.4 and 15.0 through 15.4, when NAT is used, allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted TCP packets, aka Bug IDs CSCuh33843 and CSCuj41494. | 7.8 |
2014-03-21 | CVE-2014-2124 | Resource Management Errors vulnerability in Cisco IOS Cisco IOS 15.1(2)SY3 and earlier, when used with Supervisor Engine 2T (aka Sup2T) on Catalyst 6500 devices, allows remote attackers to cause a denial of service (device crash) via crafted multicast packets, aka Bug ID CSCuf60783. | 7.1 |
2013-11-22 | CVE-2013-6693 | Buffer Errors vulnerability in Cisco IOS The MLDP implementation in Cisco IOS 15.3(3)S and earlier on 7600 routers, when many VRFs are configured, allows remote attackers to cause a denial of service (chunk corruption and device reload) by establishing many multicast flows, aka Bug ID CSCue22345. | 5.4 |
2013-11-18 | CVE-2013-6686 | Improper Input Validation vulnerability in Cisco IOS The SSL VPN implementation in Cisco IOS 15.3(1)T2 and earlier allows remote authenticated users to cause a denial of service (interface queue wedge) via crafted DTLS packets in an SSL session, aka Bug IDs CSCuh97409 and CSCud90568. | 6.8 |
2013-11-13 | CVE-2013-5552 | Permissions, Privileges, and Access Controls vulnerability in Cisco IOS Cisco IOS 12.4(24)MDB9 and earlier on Content Services Gateway (CSG) devices does not properly implement the "parse error drop" feature, which allows remote attackers to bypass intended access restrictions via a crafted series of packets, aka Bug ID CSCug90143. | 6.4 |
2013-09-27 | CVE-2013-5475 | Improper Input Validation vulnerability in Cisco IOS and IOS XE Cisco IOS 12.2 through 12.4 and 15.0 through 15.3, and IOS XE 2.1 through 3.9, allows remote attackers to cause a denial of service (device reload) via crafted DHCP packets that are processed locally by a (1) server or (2) relay agent, aka Bug ID CSCug31561. | 7.8 |
2013-09-27 | CVE-2013-5474 | Race Condition vulnerability in Cisco IOS Race condition in the IPv6 virtual fragmentation reassembly (VFR) implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.3 allows remote attackers to cause a denial of service (device reload or hang) via fragmented IPv6 packets, aka Bug ID CSCud64812. | 7.8 |