PT-2001-2033 · Cisco · Cisco 12000+1
Publicado
2001-12-06
·
Atualizado
2017-10-10
·
CVE-2001-0867
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Cisco 12000 with IOS version 12.0
Description
The issue concerns improper filtering of packet fragments in Cisco 12000 with IOS, allowing remote attackers to bypass intended access controls even when the "fragment" keyword is used in an Access Control List (ACL).
Recommendations
For Cisco 12000 with IOS version 12.0, consider reconfiguring the ACL to more effectively handle packet fragments as a temporary workaround until a patch is available.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Cisco 12000
Ios