Vulnerabilities > Cisco > IOS > High

DATE CVE VULNERABILITY TITLE RISK
2009-03-27 CVE-2009-0635 Resource Management Errors vulnerability in Cisco IOS 12.4T/12.4Xz/12.4Ya
Memory leak in the Cisco Tunneling Control Protocol (cTCP) encapsulation feature in Cisco IOS 12.4, when an Easy VPN (aka EZVPN) server is enabled, allows remote attackers to cause a denial of service (memory consumption and device crash) via a sequence of TCP packets.
network
cisco CWE-399
7.1
2009-03-27 CVE-2009-0630 Features IP Sockets Denial Of Service vulnerability in Cisco IOS
The (1) Cisco Unified Communications Manager Express; (2) SIP Gateway Signaling Support Over Transport Layer Security (TLS) Transport; (3) Secure Signaling and Media Encryption; (4) Blocks Extensible Exchange Protocol (BEEP); (5) Network Admission Control HTTP Authentication Proxy; (6) Per-user URL Redirect for EAPoUDP, Dot1x, and MAC Authentication Bypass; (7) Distributed Director with HTTP Redirects; and (8) TCP DNS features in Cisco IOS 12.0 through 12.4 do not properly handle IP sockets, which allows remote attackers to cause a denial of service (outage or resource consumption) via a series of crafted TCP packets.
network
cisco
7.1
2009-03-27 CVE-2009-0626 Resource Management Errors vulnerability in Cisco IOS
The SSLVPN feature in Cisco IOS 12.3 through 12.4 allows remote attackers to cause a denial of service (device reload or hang) via a crafted HTTPS packet.
network
low complexity
cisco CWE-399
7.8
2009-03-27 CVE-2009-0631 Features UDP Packet Denial of Service vulnerability in Cisco IOS
Unspecified vulnerability in Cisco IOS 12.0 through 12.4, when configured with (1) IP Service Level Agreements (SLAs) Responder, (2) Session Initiation Protocol (SIP), (3) H.323 Annex E Call Signaling Transport, or (4) Media Gateway Control Protocol (MGCP) allows remote attackers to cause a denial of service (blocked input queue on the inbound interface) via a crafted UDP packet.
network
low complexity
cisco
7.8
2008-11-06 CVE-2008-4963 Denial Of Service vulnerability in Cisco Catos and IOS
Unspecified vulnerability in the VLAN Trunking Protocol (VTP) implementation on Cisco IOS and CatOS, when the VTP operating mode is not transparent, allows remote attackers to cause a denial of service (device reload or hang) via a crafted VTP packet sent to a switch interface configured as a trunk port.
network
cisco
7.1
2008-09-26 CVE-2008-3813 Unspecified vulnerability in Cisco IOS
Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when the L2TP mgmt daemon process is enabled, allows remote attackers to cause a denial of service (device reload) via a crafted L2TP packet.
network
low complexity
cisco
7.8
2008-09-26 CVE-2008-3812 Unspecified vulnerability in Cisco IOS
Cisco IOS 12.4, when IOS firewall Application Inspection Control (AIC) with HTTP Deep Packet Inspection is enabled, allows remote attackers to cause a denial of service (device reload) via a malformed HTTP transit packet.
network
cisco
7.1
2008-09-26 CVE-2008-3811 Improper Input Validation vulnerability in Cisco IOS
Cisco IOS 12.2 and 12.4, when NAT Skinny Call Control Protocol (SCCP) Fragmentation Support is enabled, allows remote attackers to cause a denial of service (device reload) via segmented SCCP messages, aka Cisco Bug ID CSCsi17020, a different vulnerability than CVE-2008-3810.
network
low complexity
cisco CWE-20
7.8
2008-09-26 CVE-2008-3810 Improper Input Validation vulnerability in Cisco IOS
Cisco IOS 12.2 and 12.4, when NAT Skinny Call Control Protocol (SCCP) Fragmentation Support is enabled, allows remote attackers to cause a denial of service (device reload) via segmented SCCP messages, aka CSCsg22426, a different vulnerability than CVE-2008-3811.
network
low complexity
cisco CWE-20
7.8
2008-09-26 CVE-2008-3809 Unspecified vulnerability in Cisco IOS
Cisco IOS 12.0 through 12.4 on Gigabit Switch Router (GSR) devices (aka 12000 Series routers) allows remote attackers to cause a denial of service (device crash) via a malformed Protocol Independent Multicast (PIM) packet.
network
cisco
7.1