Vulnerabilities > Cisco > Transport Controller

DATE CVE VULNERABILITY TITLE RISK
2006-04-07 CVE-2006-1672 Multiple vulnerability in Cisco Optical Networking System and Transport Controller
The installation of Cisco Transport Controller (CTC) for Cisco Optical Networking System (ONS) 15000 series nodes adds a Java policy file entry with a wildcard that grants the java.security.AllPermission permission to any http URL containing "fs/LAUNCHER.jar", which allows remote attackers to execute arbitrary code on a CTC workstation, aka bug ID CSCea25049.
network
low complexity
cisco
7.5
2006-04-07 CVE-2006-1671 Multiple vulnerability in Cisco Optical Networking System and Transport Controller
Control cards for Cisco Optical Networking System (ONS) 15000 series nodes before 20060405 allow remote attackers to cause a denial of service (card reset) via (1) a "crafted" IP packet to a device with secure mode EMS-to-network-element access, aka bug ID CSCsc51390; (2) a "crafted" IP packet to a device with IP on the LAN interface, aka bug ID CSCsd04168; and (3) a "malformed" OSPF packet, aka bug ID CSCsc54558.
network
low complexity
cisco
5.0