PT-2001-1517 · Cisco · Cisco Switches/Routers
Published
2001-05-03
·
Updated
2008-09-05
·
CVE-2001-0288
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Cisco switches and routers versions prior to 12.1
Description
The issue allows remote attackers to spoof or hijack TCP connections due to the production of predictable TCP Initial Sequence Numbers (ISNs).
Recommendations
For versions prior to 12.1, consider upgrading to a version that does not produce predictable TCP ISNs to prevent TCP connection spoofing or hijacking.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco Switches/Routers