PT-2002-1503 · Foundry Networks · Serveriron
Published
2002-06-11
·
Updated
2008-09-05
·
CVE-2002-0452
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Foundry Networks ServerIron switches (affected versions not specified)
Description
The issue concerns the application of "url-map" rules in Foundry Networks ServerIron switches. Specifically, these switches do not decode URIs when applying these rules. This could facilitate attacks where an attacker causes the switch to forward traffic to a different server than intended. As a result, vulnerabilities that would otherwise be inaccessible could be exploited.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Serveriron