Show filters
42 Total Results
Displaying 31-40 of 42
Sort by:
Attacker Value
Unknown

CVE-2006-0485

Disclosure Date: February 01, 2006 (last updated February 22, 2025)
The TCL shell in Cisco IOS 12.2(14)S before 12.2(14)S16, 12.2(18)S before 12.2(18)S11, and certain other releases before 25 January 2006 does not perform Authentication, Authorization, and Accounting (AAA) command authorization checks, which may allow local users to execute IOS EXEC commands that were prohibited via the AAA configuration, aka Bug ID CSCeh73049.
0
Attacker Value
Unknown

CVE-2006-0340

Disclosure Date: January 21, 2006 (last updated February 22, 2025)
Unspecified vulnerability in Stack Group Bidding Protocol (SGBP) support in Cisco IOS 12.0 through 12.4 running on various Cisco products, when SGBP is enabled, allows remote attackers on the local network to cause a denial of service (device hang and network traffic loss) via a crafted UDP packet to port 9900.
0
Attacker Value
Unknown

CVE-2005-2451

Disclosure Date: August 03, 2005 (last updated February 22, 2025)
Cisco IOS 12.0 through 12.4 and IOS XR before 3.2, with IPv6 enabled, allows remote attackers on a local network segment to cause a denial of service (device reload) and possibly execute arbitrary code via a crafted IPv6 packet.
0
Attacker Value
Unknown

CVE-2005-1020

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Secure Shell (SSH) 2 in Cisco IOS 12.0 through 12.3 allows remote attackers to cause a denial of service (device reload) (1) via a username that contains a domain name when using a TACACS+ server to authenticate, (2) when a new SSH session is in the login phase and a currently logged in user issues a send command, or (3) when IOS is logging messages and an SSH session is terminated while the server is sending data.
0
Attacker Value
Unknown

CVE-2005-1021

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Memory leak in Secure Shell (SSH) in Cisco IOS 12.0 through 12.3, when authenticating against a TACACS+ server, allows remote attackers to cause a denial of service (memory consumption) via an incorrect username or password.
0
Attacker Value
Unknown

CVE-2005-0186

Disclosure Date: January 19, 2005 (last updated February 22, 2025)
Cisco IOS 12.1YD, 12.2T, 12.3 and 12.3T, when configured for the IOS Telephony Service (ITS), CallManager Express (CME) or Survivable Remote Site Telephony (SRST), allows remote attackers to cause a denial of service (device reboot) via a malformed packet to the SCCP port.
0
Attacker Value
Unknown

CVE-2004-1775

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Cisco VACM (View-based Access Control MIB) for Catalyst Operating Software (CatOS) 5.5 and 6.1 and IOS 12.0 and 12.1 allows remote attackers to read and modify device configuration via the read-write community string.
0
Attacker Value
Unknown

CVE-2003-0567

Disclosure Date: August 18, 2003 (last updated February 22, 2025)
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a particular sequence of IPv4 packets to an interface on the device, causing the input queue on that interface to be marked as full.
0
Attacker Value
Unknown

CVE-2002-1024

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144).
0
Attacker Value
Unknown

CVE-2001-0537

Disclosure Date: July 21, 2001 (last updated February 22, 2025)
HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when local authorization is being used, by specifying a high access level in the URL.
0