VYPR
Vendor

Enterasys

Products
23
CVEs
9
Across products
24
Status
Private

Products

23

Recent CVEs

9
  • CVE-2011-5227Oct 25, 2012
    risk 0.09cvss epss 0.77

    Stack-based buffer overflow in the Syslog service (nssyslogd.exe) in Enterasys Network Management Suite (NMS) before 4.1.0.80 allows remote attackers to execute arbitrary code via a long PRIO field in a message to UDP port 514.

  • CVE-2002-1501Apr 2, 2003
    risk 0.04cvss epss 0.07

    The MPS functionality in Enterasys SSR8000 (Smart Switch Router) before firmware 8.3.0.10 allows remote attackers to cause a denial of service (crash) via multiple port scans to ports 15077 and 15078.

  • CVE-2001-0669Oct 30, 2001
    risk 0.03cvss epss 0.04

    Various Intrusion Detection Systems (IDS) including (1) Cisco Secure Intrusion Detection System, (2) Cisco Catalyst 6000 Intrusion Detection System Module, (3) Dragon Sensor 4.x, (4) Snort before 1.8.1, (5) ISS RealSecure Network Sensor 5.x and 6.x before XPU 3.2, and (6) ISS…

  • CVE-2013-7312Jan 23, 2014
    risk 0.00cvss epss 0.01

    The OSPF implementation on Enterasys switches and routers does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service…

  • CVE-2007-2343Apr 27, 2007
    risk 0.00cvss epss 0.04

    Stack-based buffer overflow in the TFTPD component in Enterasys NetSight Console 2.1 and NetSight Inventory Manager 2.1, and possibly earlier, allows remote attackers to execute arbitrary code via crafted request packets that contain long file names.

  • CVE-2007-2344Apr 27, 2007
    risk 0.00cvss epss 0.02

    The BOOTPD component in Enterasys NetSight Console 2.1 and NetSight Inventory Manager 2.1, and possibly earlier, on Windows allows remote attackers to cause a denial of service (daemon crash) via a UDP packet that contains an invalid "packet type" field.

  • CVE-2005-2026Jun 16, 2005
    risk 0.00cvss epss 0.01

    Enterasys Vertical Horizon VH-2402S before firmware 2.05.05.09 has a hard-coded account and password for debugging, which allows remote attackers to gain privileges.

  • CVE-2005-2027Jun 16, 2005
    risk 0.00cvss epss 0.01

    Enterasys Vertical Horizon VH-2402S before firmware 2.05.05.09 does not properly restrict certain debugging commands to the ADMIN account, which could allow attackers to obtain sensitive information or modify the registry.

  • CVE-2004-0674Aug 6, 2004
    risk 0.00cvss epss 0.02

    Enterasys XSR-1800 series Security Routers, when running firmware 7.0.0.0 and using Policy-Based Routing, allow remote attackers to cause a denial of service (crash) via a packet with the IP record route option set.