Vulnerabilities > Cisco > IOS > High

DATE CVE VULNERABILITY TITLE RISK
2003-08-18 CVE-2003-0567 Improper Input Validation vulnerability in Cisco products
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a particular sequence of IPv4 packets to an interface on the device, causing the input queue on that interface to be marked as full.
network
low complexity
cisco CWE-20
7.8
2003-03-03 CVE-2003-0100 Buffer Overflow vulnerability in Cisco IOS OSPF Neighbor
Buffer overflow in Cisco IOS 11.2.x to 12.0.x allows remote attackers to cause a denial of service and possibly execute commands via a large number of OSPF neighbor announcements.
network
low complexity
cisco
7.5
2002-12-31 CVE-2002-2315 Denial Of Service vulnerability in Cisco IOS ICMP Redirect
Cisco IOS 11.2.x and 12.0.x does not limit the size of its redirect table, which allows remote attackers to cause a denial of service (memory consumption) via spoofed ICMP redirect packets to the router.
network
low complexity
cisco
7.8
2002-12-31 CVE-2002-2239 Improper Input Validation vulnerability in Cisco IOS 12.1E
The Cisco Optical Service Module (OSM) for the Catalyst 6500 and 7600 series running Cisco IOS 12.1(8)E through 12.1(13.4)E allows remote attackers to cause a denial of service (hang) via a malformed packet.
network
low complexity
cisco CWE-20
7.8
2002-12-31 CVE-2002-2208 Denial Of Service vulnerability in Cisco IOS EIGRP Announcement ARP
Extended Interior Gateway Routing Protocol (EIGRP), as implemented in Cisco IOS 11.3 through 12.2 and other products, allows remote attackers to cause a denial of service (flood) by sending a large number of spoofed EIGRP neighbor announcements, which results in an ARP storm on the local network.
7.8
2002-12-31 CVE-2002-1706 Improper Verification of Cryptographic Signature vulnerability in Cisco IOS
Cisco IOS software 11.3 through 12.2 running on Cisco uBR7200 and uBR7100 series Universal Broadband Routers allows remote attackers to modify Data Over Cable Service Interface Specification (DOCSIS) settings via a DOCSIS file without a Message Integrity Check (MIC) signature, which is approved by the router.
network
low complexity
cisco CWE-347
7.5
2002-10-04 CVE-2002-1024 Resource Management Errors vulnerability in Cisco products
Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144).
network
cisco CWE-399
7.1
2002-08-12 CVE-2002-0813 Buffer Errors vulnerability in Cisco IOS 11.1/11.2/11.3
Heap-based buffer overflow in the TFTP server capability in Cisco IOS 11.1, 11.2, and 11.3 allows remote attackers to cause a denial of service (reset) or modify configuration via a long filename.
network
cisco CWE-119
7.1
2001-11-28 CVE-2001-0929 Unspecified vulnerability in Cisco IOS
Cisco IOS Firewall Feature set, aka Context Based Access Control (CBAC) or Cisco Secure Integrated Software, for IOS 11.2P through 12.2T does not properly check the IP protocol type, which could allow remote attackers to bypass access control lists.
network
low complexity
cisco
7.5
2001-05-03 CVE-2001-0288 Unspecified vulnerability in Cisco IOS
Cisco switches and routers running IOS 12.1 and earlier produce predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.
network
low complexity
cisco
7.5