PT-2002-2198 · Cisco · Cisco Catalyst
Published
2002-10-28
·
Updated
2008-09-10
·
CVE-2002-1222
CVSS v2.0
7.1
High
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions:
Cisco Catalyst switches running CatOS versions 5.4 through 7.3
Description:
A buffer overflow issue in the embedded HTTP server allows remote attackers to cause a denial of service, resulting in a reset of the system, by sending a long HTTP request.
Recommendations:
For CatOS versions 5.4 through 7.3, consider disabling the embedded HTTP server as a temporary workaround until a patch is available. Restrict access to the HTTP server to minimize the risk of exploitation.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Catalyst