Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-0348

Опубликовано: 28 янв. 2011
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

Cisco IOS 12.4(11)MD, 12.4(15)MD, 12.4(22)MD, 12.4(24)MD before 12.4(24)MD3, 12.4(22)MDA before 12.4(22)MDA5, and 12.4(24)MDA before 12.4(24)MDA3 on the Cisco Content Services Gateway Second Generation (aka CSG2) allows remote attackers to bypass intended access restrictions and intended billing restrictions by sending HTTP traffic to a restricted destination after sending HTTP traffic to an unrestricted destination, aka Bug ID CSCtk35917.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:o:cisco:ios:12.4\(11\)md:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(15\)md:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(22\)md:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(22\)mda:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(24\)md:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(24\)md1:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(24\)mda:*:*:*:*:*:*:*
cpe:2.3:h:cisco:content_services_gateway_second_generation:*:*:*:*:*:*:*:*

EPSS

Процентиль: 42%
0.00203
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

github
больше 3 лет назад

Cisco IOS 12.4(11)MD, 12.4(15)MD, 12.4(22)MD, 12.4(24)MD before 12.4(24)MD3, 12.4(22)MDA before 12.4(22)MDA5, and 12.4(24)MDA before 12.4(24)MDA3 on the Cisco Content Services Gateway Second Generation (aka CSG2) allows remote attackers to bypass intended access restrictions and intended billing restrictions by sending HTTP traffic to a restricted destination after sending HTTP traffic to an unrestricted destination, aka Bug ID CSCtk35917.

EPSS

Процентиль: 42%
0.00203
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-264