Show filters
69 Total Results
Displaying 61-69 of 69
Sort by:
Attacker Value
Unknown

CVE-2002-1358

Disclosure Date: December 23, 2002 (last updated February 22, 2025)
Multiple SSH2 servers and clients do not properly handle lists with empty elements or strings, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite.
0
Attacker Value
Unknown

CVE-2002-1360

Disclosure Date: December 23, 2002 (last updated February 22, 2025)
Multiple SSH2 servers and clients do not properly handle strings with null characters in them when the string length is specified by a length field, which could allow remote attackers to cause a denial of service or possibly execute arbitrary code due to interactions with the use of null-terminated strings as implemented using languages such as C, as demonstrated by the SSHredder SSH protocol test suite.
0
Attacker Value
Unknown

CVE-2002-1359

Disclosure Date: December 23, 2002 (last updated February 22, 2025)
Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code via buffer overflow attacks, as demonstrated by the SSHredder SSH protocol test suite.
0
Attacker Value
Unknown

CVE-2002-1357

Disclosure Date: December 23, 2002 (last updated February 22, 2025)
Multiple SSH2 servers and clients do not properly handle packets or data elements with incorrect length specifiers, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite.
0
Attacker Value
Unknown

CVE-2002-1024

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144).
0
Attacker Value
Unknown

CVE-2002-0339

Disclosure Date: June 25, 2002 (last updated February 22, 2025)
Cisco IOS 11.1CC through 12.2 with Cisco Express Forwarding (CEF) enabled includes portions of previous packets in the padding of a MAC level packet when the MAC packet's length is less than the IP level packet length.
0
Attacker Value
Unknown

CVE-2001-0929

Disclosure Date: November 28, 2001 (last updated February 22, 2025)
Cisco IOS Firewall Feature set, aka Context Based Access Control (CBAC) or Cisco Secure Integrated Software, for IOS 11.2P through 12.2T does not properly check the IP protocol type, which could allow remote attackers to bypass access control lists.
0
Attacker Value
Unknown

CVE-2001-0537

Disclosure Date: July 21, 2001 (last updated February 22, 2025)
HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when local authorization is being used, by specifying a high access level in the URL.
0
Attacker Value
Unknown

CVE-2001-1183

Disclosure Date: July 12, 2001 (last updated February 22, 2025)
PPTP implementation in Cisco IOS 12.1 and 12.2 allows remote attackers to cause a denial of service (crash) via a malformed packet.
0