PT-2002-3091 · Cisco · Ios+1
Published
2002-12-31
·
Updated
2024-08-08
·
CVE-2002-2379
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco AS5350 IOS version 12.2(11)T
Description
The issue allows remote attackers to cause a denial of service (crash) via a port scan, possibly due to an ssh bug, when access control lists (ACLs) are applied and possibly with ssh running. Note that this issue could not be reproduced by the vendor.
Recommendations
For Cisco AS5350 IOS version 12.2(11)T, consider disabling ssh or restricting access to it as a temporary workaround until a patch is available. Additionally, review and adjust access control lists (ACLs) to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco As5350
Ios