Описание
Cisco routers 9.17 and earlier allow remote attackers to bypass security restrictions via certain IP source routed packets that should normally be denied using the "no ip source-route" command.
Ссылки
- PatchVendor Advisory
- PatchThird Party AdvisoryUS Government Resource
- PatchVendor Advisory
- PatchThird Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 9.17 (включая)
Одно из
cpe:2.3:h:cisco:router:*:*:*:*:*:*:*:*
cpe:2.3:h:cisco:router:8.2:*:*:*:*:*:*:*
cpe:2.3:h:cisco:router:8.3:*:*:*:*:*:*:*
cpe:2.3:h:cisco:router:9.0:*:*:*:*:*:*:*
cpe:2.3:h:cisco:router:9.1:*:*:*:*:*:*:*
EPSS
Процентиль: 63%
0.00454
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
около 3 лет назад
Cisco routers 9.17 and earlier allow remote attackers to bypass security restrictions via certain IP source routed packets that should normally be denied using the "no ip source-route" command.
EPSS
Процентиль: 63%
0.00454
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other