PT-2015-1412 · Cisco · Cisco Ios+1

Publicado

2015-06-20

·

Atualizado

2016-12-28

·

CVE-2015-4202

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Cisco IOS version 12.2SCH on uBR10000 router Cable Modem Termination Systems (CMTS)
Description The issue concerns the Cisco IOS 12.2SCH on uBR10000 router Cable Modem Termination Systems (CMTS) not properly restricting access to the IP Detail Record (IPDR) service. This allows remote attackers to obtain potentially sensitive MAC address and network-utilization information via crafted IPDR packets.
Recommendations For Cisco IOS version 12.2SCH on uBR10000 router Cable Modem Termination Systems (CMTS), consider restricting access to the IPDR service as a temporary workaround until a patch is available. Additionally, limiting the use of crafted IPDR packets can help minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-10507
CVE-2015-4202

Produtos afetados

Cisco Ios
Ubr10000