PT-2007-2358 · Cisco · Cisco Ios
Published
2007-02-14
·
Updated
2017-10-11
·
CVE-2007-0917
CVSS v2.0
6.4
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions:
Cisco IOS versions 12.3T through 12.4XE
Description:
The issue allows remote attackers to bypass IPS signatures that use regular expressions via fragmented packets. This affects the Intrusion Prevention System (IPS) feature.
Recommendations:
For Cisco IOS versions 12.3T through 12.4XE, consider disabling the IPS feature that uses regular expressions until a patch is available. Restrict access to the network to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco Ios