PT-2002-3091 · Cisco · Ios+1

Published

2002-12-31

·

Updated

2024-08-08

·

CVE-2002-2379

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Cisco AS5350 IOS version 12.2(11)T
Description The issue allows remote attackers to cause a denial of service (crash) via a port scan, possibly due to an ssh bug, when access control lists (ACLs) are applied and possibly with ssh running. Note that this issue could not be reproduced by the vendor.
Recommendations For Cisco AS5350 IOS version 12.2(11)T, consider disabling ssh or restricting access to it as a temporary workaround until a patch is available. Additionally, review and adjust access control lists (ACLs) to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2002-2379

Affected Products

Cisco As5350
Ios