VYPR

Vendor CVEs

Cisco Systems, Inc.

All CVEs

7,058 total · sorted by risk
  • CVE-2002-1024Oct 4, 2002
    risk 0.00cvss —epss 0.03

    Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144).

  • CVE-2002-1106Oct 4, 2002
    risk 0.00cvss —epss 0.01

    Cisco Virtual Private Network (VPN) Client software 2.x.x, and 3.x before 3.5.1C, does not properly verify that certificate DN fields match those of the certificate from the VPN Concentrator, which allows remote attackers to conduct man-in-the-middle attacks.

  • CVE-2002-0880Oct 4, 2002
    risk 0.00cvss —epss 0.01

    Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allow remote attackers to cause a denial of service (crash) via malformed packets as demonstrated by (1) "jolt", (2) "jolt2", (3) "raped", (4) "hping2", (5) "bloop", (6) "bubonic", (7) "mutant", (8) "trash", and (9) "trash2."

  • CVE-2002-0881Oct 4, 2002
    risk 0.00cvss —epss 0.00

    Cisco IP Phone (VoIP) models 7910, 7940, and 7960 use a default administrative password, which allows attackers with physical access to the phone to modify the configuration settings.

  • CVE-2002-1096Oct 4, 2002
    risk 0.00cvss —epss 0.01

    Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.1, allows restricted administrators to obtain user passwords that are stored in plaintext in HTML source code.

  • CVE-2002-1104Oct 4, 2002
    risk 0.00cvss —epss 0.02

    Cisco Virtual Private Network (VPN) Client software 2.x.x and 3.x before 3.0.5 allows remote attackers to cause a denial of service (crash) via TCP packets with source and destination ports of 137 (NETBIOS).

  • CVE-2002-1098Oct 4, 2002
    risk 0.00cvss —epss 0.01

    Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.3, adds an "HTTPS on Public Inbound (XML-Auto)(forward/in)" rule but sets the protocol to "ANY" when the XML filter configuration is enabled, which ultimately allows arbitrary traffic to pass through the concentrator.

  • CVE-2002-1102Oct 4, 2002
    risk 0.00cvss —epss 0.02

    The LAN-to-LAN IPSEC capability for Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.4, allows remote attackers to cause a denial of service via an incoming LAN-to-LAN connection with an existing security association with another device on the remote network, which causes…

  • CVE-2002-0882Oct 4, 2002
    risk 0.00cvss —epss 0.03

    The web server for Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allows remote attackers to cause a denial of service (reset) and possibly read sensitive memory via a large integer value in (1) the stream ID of the StreamingStatistics script, or (2) the port ID of the…

  • CVE-2002-1095Oct 4, 2002
    risk 0.00cvss —epss 0.01

    Cisco VPN 3000 Concentrator before 2.5.2(F), with encryption enabled, allows remote attackers to cause a denial of service (reload) via a Windows-based PPTP client with the "No Encryption" option set.

  • CVE-2002-1092Oct 4, 2002
    risk 0.00cvss —epss 0.01

    Cisco VPN 3000 Concentrator 3.6(Rel) and earlier, and 2.x.x, when configured to use internal authentication with group accounts and without any user accounts, allows remote VPN clients to log in using PPTP or IPSEC user authentication.

  • CVE-2002-0870Sep 5, 2002
    risk 0.00cvss —epss 0.01

    The original patch for the Cisco Content Service Switch 11000 Series authentication bypass vulnerability (CVE-2001-0622) was incomplete, which still allows remote attackers to gain additional privileges by directly requesting the web management URL instead of navigating through…

  • CVE-2002-0853Sep 5, 2002
    risk 0.00cvss —epss 0.02

    Cisco Virtual Private Network (VPN) Client 3.5.4 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a packet with a zero-length payload.

  • CVE-2002-0852Sep 5, 2002
    risk 0.00cvss —epss 0.01

    Buffer overflows in Cisco Virtual Private Network (VPN) Client 3.5.4 and earlier allows remote attackers to cause a denial of service via (1) an Internet Key Exchange (IKE) with a large Security Parameter Index (SPI) payload, or (2) an IKE packet with a large number of valid…

  • CVE-2002-0505Aug 12, 2002
    risk 0.00cvss —epss 0.02

    Memory leak in the Call Telephony Integration (CTI) Framework authentication for Cisco CallManager 3.0 and 3.1 before 3.1(3) allows remote attackers to cause a denial of service (crash and reload) via a series of authentication failures, e.g. via incorrect passwords.

  • CVE-2002-0778Aug 12, 2002
    risk 0.00cvss —epss 0.02

    The default configuration of the proxy for Cisco Cache Engine and Content Engine allows remote attackers to use HTTPS to make TCP connections to allowed IP addresses while hiding the actual source IP.

  • CVE-2002-0849Aug 12, 2002
    risk 0.00cvss —epss 0.00

    Linux-iSCSI iSCSI implementation installs the iscsi.conf file with world-readable permissions on some operating systems, including Red Hat Linux Limbo Beta #1, which could allow local users to gain privileges by reading the cleartext CHAP password.

  • CVE-2002-0792Aug 12, 2002
    risk 0.00cvss —epss 0.03

    The web management interface for Cisco Content Service Switch (CSS) 11000 switches allows remote attackers to cause a denial of service (soft reset) via (1) an HTTPS POST request, or (2) malformed XML data.

  • CVE-2002-0848Aug 12, 2002
    risk 0.00cvss —epss 0.02

    Cisco VPN 5000 series concentrator hardware 6.0.21.0002 and earlier, and 5.2.23.0003 and earlier, when using RADIUS with a challenge type of Password Authentication Protocol (PAP) or Challenge, sends the user password in cleartext in a validation retry request, which could allow…

  • CVE-2002-0545Jul 3, 2002
    risk 0.00cvss —epss 0.02

    Cisco Aironet before 11.21 with Telnet enabled allows remote attackers to cause a denial of service (reboot) via a series of login attempts with invalid usernames and passwords.

  • CVE-2002-0339Jun 25, 2002
    risk 0.00cvss —epss 0.02

    Cisco IOS 11.1CC through 12.2 with Cisco Express Forwarding (CEF) enabled includes portions of previous packets in the padding of a MAC level packet when the MAC packet's length is less than the IP level packet length.

  • CVE-2002-0241May 29, 2002
    risk 0.00cvss —epss 0.02

    NDSAuth.DLL in Cisco Secure Authentication Control Server (ACS) 3.0.1 does not check the Expired or Disabled state of users in the Novell Directory Services (NDS), which could allow those users to authenticate to the server.

  • CVE-2002-0225May 16, 2002
    risk 0.00cvss —epss 0.00

    tac_plus Tacacs+ daemon F4.0.4.alpha, originally maintained by Cisco, creates files from the accounting directive with world-readable and writable permissions, which allows local users to access and modify sensitive files.

  • CVE-2002-0159Apr 22, 2002
    risk 0.00cvss —epss 0.05

    Format string vulnerability in the administration function in Cisco Secure Access Control Server (ACS) for Windows, 2.6.x and earlier and 3.x through 3.01 (build 40), allows remote attackers to crash the CSADMIN module only (denial of service of administration function) or…

  • CVE-2002-0160Apr 22, 2002
    risk 0.00cvss —epss 0.02

    The administration function in Cisco Secure Access Control Server (ACS) for Windows, 2.6.x and earlier and 3.x through 3.01 (build 40), allows remote attackers to read HTML, Java class, and image files outside the web root via a ..\.. (modified ..) in the URL to port 2002.

  • CVE-2002-1595Jan 9, 2002
    risk 0.00cvss —epss 0.02

    Cisco SN 5420 Storage Router 1.1(5) and earlier allows attackers to read configuration files without authorization.

  • CVE-2002-1597Jan 9, 2002
    risk 0.00cvss —epss 0.03

    Cisco SN 5420 Storage Router 1.1(5) and earlier allows remote attackers to cause a denial of service (halt) via a fragmented packet to the Gigabit interface.

  • CVE-2002-1596Jan 9, 2002
    risk 0.00cvss —epss 0.02

    Cisco SN 5420 Storage Router 1.1(5) and earlier allows remote attackers to cause a denial of service (router crash) via an HTTP request with large headers.

  • CVE-2001-1210Dec 30, 2001
    risk 0.00cvss —epss 0.02

    Cisco ubr900 series routers that conform to the Data-over-Cable Service Interface Specifications (DOCSIS) standard must ship without SNMP access restrictions, which can allow remote attackers to read and write information to the MIB using arbitrary community strings.

  • CVE-2001-0867Dec 6, 2001
    risk 0.00cvss —epss 0.02

    Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not properly filter does not properly filter packet fragments even when the "fragment" keyword is used in an ACL, which allows remote attackers to bypass the intended access controls.

  • CVE-2001-0862Dec 6, 2001
    risk 0.00cvss —epss 0.02

    Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not block non-initial packet fragments, which allows remote attackers to bypass the ACL.

  • CVE-2001-0866Dec 6, 2001
    risk 0.00cvss —epss 0.02

    Cisco 12000 with IOS 12.0 and lines card based on Engine 2 does not properly handle an outbound ACL when an input ACL is not configured on all the interfaces of a multi port line card, which could allow remote attackers to bypass the intended access controls.

  • CVE-2001-0864Dec 6, 2001
    risk 0.00cvss —epss 0.01

    Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not properly handle the implicit "deny ip any any" rule in an outgoing ACL when the ACL contains exactly 448 entries, which can allow some outgoing packets to bypass access restrictions.

  • CVE-2001-0861Dec 6, 2001
    risk 0.00cvss —epss 0.02

    Cisco 12000 with IOS 12.0 and line cards based on Engine 2 and earlier allows remote attackers to cause a denial of service (CPU consumption) by flooding the router with traffic that generates a large number of ICMP Unreachable replies.

  • CVE-2001-0863Dec 6, 2001
    risk 0.00cvss —epss 0.02

    Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not handle the "fragment" keyword in a compiled ACL (Turbo ACL) for packets that are sent to the router, which allows remote attackers to cause a denial of service via a flood of fragments.

  • CVE-2001-0865Dec 6, 2001
    risk 0.00cvss —epss 0.01

    Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not support the "fragment" keyword in an outgoing ACL, which could allow fragmented packets in violation of the intended access.

  • CVE-2001-0929Nov 28, 2001
    risk 0.00cvss —epss 0.02

    Cisco IOS Firewall Feature set, aka Context Based Access Control (CBAC) or Cisco Secure Integrated Software, for IOS 11.2P through 12.2T does not properly check the IP protocol type, which could allow remote attackers to bypass access control lists.

  • CVE-2001-0895Nov 15, 2001
    risk 0.00cvss —epss 0.02

    Multiple Cisco networking products allow remote attackers to cause a denial of service on the local network via a series of ARP packets sent to the router's interface that contains a different MAC address for the router, which eventually causes the router to overwrite the MAC…

  • CVE-2001-0750Oct 18, 2001
    risk 0.00cvss —epss 0.02

    Cisco IOS 12.1(2)T, 12.1(3)T allow remote attackers to cause a denial of service (reload) via a connection to TCP ports 3100-3999, 5100-5999, 7100-7999 and 10100-10999.

  • CVE-2001-0752Oct 18, 2001
    risk 0.00cvss —epss 0.02

    Cisco CBOS 2.3.8 and earlier allows remote attackers to cause a denial of service via an ICMP ECHO REQUEST (ping) with the IP Record Route option set.

  • CVE-2001-0754Oct 18, 2001
    risk 0.00cvss —epss 0.01

    Cisco CBOS 2.3.8 and earlier allows remote attackers to cause a denial of service via a series of large ICMP ECHO REPLY (ping) packets, which cause it to enter ROMMON mode and stop forwarding packets.

  • CVE-2001-0753Oct 18, 2001
    risk 0.00cvss —epss 0.01

    Cisco CBOS 2.3.8 and earlier stores the passwords for (1) exec and (2) enable in cleartext in the NVRAM and a configuration file, which could allow unauthorized users to obtain the passwords and gain privileges.

  • CVE-2001-0783Oct 18, 2001
    risk 0.00cvss —epss 0.02

    Cisco TFTP server 1.1 allows remote attackers to read arbitrary files via a ..(dot dot) attack in the GET command.

  • CVE-2001-0757Oct 18, 2001
    risk 0.00cvss —epss 0.03

    Cisco 6400 Access Concentrator Node Route Processor 2 (NRP2) 12.1DC card does not properly disable access when a password has not been set for vtys, which allows remote attackers to obtain access via telnet.

  • CVE-2001-1098Oct 10, 2001
    risk 0.00cvss —epss 0.00

    Cisco PIX firewall manager (PFM) 4.3(2)g logs the enable password in plaintext in the pfm.log file, which could allow local users to obtain the password by reading the file.

  • CVE-2001-1071Oct 9, 2001
    risk 0.00cvss —epss 0.02

    Cisco IOS 12.2 and earlier running Cisco Discovery Protocol (CDP) allows remote attackers to cause a denial of service (memory consumption) via a flood of CDP neighbor announcements.

  • CVE-2001-0650Sep 20, 2001
    risk 0.00cvss —epss 0.02

    Cisco devices IOS 12.0 and earlier allow a remote attacker to cause a crash, or bad route updates, via malformed BGP updates with unrecognized transitive attribute.

  • CVE-2001-1105Sep 12, 2001
    risk 0.00cvss —epss 0.03

    RSA BSAFE SSL-J 3.0, 3.0.1 and 3.1, as used in Cisco iCND 2.0, caches session IDs from failed login attempts, which could allow remote attackers to bypass SSL client authentication and gain access to sensitive data by logging in after an initial failure.

  • CVE-2001-1065Aug 31, 2001
    risk 0.00cvss —epss 0.01

    Web-based configuration utility in Cisco 600 series routers running CBOS 2.0.1 through 2.4.2ap binds itself to port 80 even when web-based configuration services are disabled, which could leave the router open to attack.

  • CVE-2001-0622Aug 14, 2001
    risk 0.00cvss —epss 0.02

    The web management service on Cisco Content Service series 11000 switches (CSS) before WebNS 4.01B29s or WebNS 4.10B17s allows a remote attacker to gain additional privileges by directly requesting the web management URL instead of navigating through the interface.