6 results (0.010 seconds)

CVSS: 10.0EPSS: 97%CPEs: 323EXPL: 7

A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device or remotely execute code with elevated privileges. The Cluster Management Protocol utilizes Telnet internally as a signaling and command protocol between cluster members. The vulnerability is due to the combination of two factors: (1) the failure to restrict the use of CMP-specific Telnet options only to internal, local communications between cluster members and instead accept and process such options over any Telnet connection to an affected device; and (2) the incorrect processing of malformed CMP-specific Telnet options. An attacker could exploit this vulnerability by sending malformed CMP-specific Telnet options while establishing a Telnet session with an affected Cisco device configured to accept Telnet connections. An exploit could allow an attacker to execute arbitrary code and obtain full control of the device or cause a reload of the affected device. • https://www.exploit-db.com/exploits/41872 https://www.exploit-db.com/exploits/42122 https://github.com/homjxi0e/CVE-2017-3881-exploit-cisco- https://github.com/homjxi0e/CVE-2017-3881-Cisco https://github.com/1337g/CVE-2017-3881 https://github.com/mzakyz666/PoC-CVE-2017-3881 http://www.securityfocus.com/bid/96960 http://www.securityfocus.com/bid/97391 http://www.securitytracker.com/id/1038059 https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-201 • CWE-20: Improper Input Validation •

CVSS: 5.4EPSS: 0%CPEs: 97EXPL: 0

The HTTP server in Cisco IOS on Catalyst switches does not properly handle TCP socket events, which allows remote attackers to cause a denial of service (device crash) via crafted packets on TCP port (1) 80 or (2) 443, aka Bug ID CSCuc53853. El servidor HTTP en Cisco IOS en switches Catalyst no trata correctamente los eventos socket TCP, lo que permite a atacantes remotos provocar una denegación de servicio (caída de dispositivo) a través de paquetes hechos a mano en el puerto TCP (1) 80 o (2) 443, también conocido como Bug ID CSCuc53853. • http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-1100 • CWE-399: Resource Management Errors •

CVSS: 6.3EPSS: 0%CPEs: 10EXPL: 0

Cisco IOS 15.0 and 15.1 on Catalyst 3560 and 3750 series switches allows remote authenticated users to cause a denial of service (device reload) by completing local web authentication quickly, aka Bug ID CSCts88664. Cisco IOS v15.0 y v15.1 en el Catalyst 3560 y 3750 switches de la serie permite a usuarios remotos autenticados provocar una denegación de servicio (recarga del dispositivo) al completar la autenticación web local con rapidez, también conocido como Bug ID CSCts88664. • http://www.cisco.com/en/US/docs/switches/lan/catalyst3750x_3560x/software/release/15.0_1_se/release/notes/OL25302.html http://www.securitytracker.com/id?1027349 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVSS: 7.8EPSS: 0%CPEs: 37EXPL: 0

Memory leak on the Cisco Wireless LAN Controller (WLC) platform 4.x before 4.2.205.0, 5.1 before 5.1.163.0, and 5.0 and 5.2 before 5.2.178.0, as used in Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, and 4400 Series Wireless Services Modules (WiSM), WLC Modules for Integrated Services Routers, and Catalyst 3750G Integrated Wireless LAN Controllers, allows remote attackers to cause a denial of service (memory consumption and device reload) via SSH management connections, aka Bug ID CSCsw40789. Fuga de moria la plataforma Cisco Wireless LAN Controller (WLC) v4.x anterior a v4.2.205.0, v5.1 anterior a v5.1.163.0, y v5.0 y v5.2 anterior a v5.2.178.0, usado en Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, y 4400 Series Wireless Services Modules (WiSM), WLC Modules para Integrated Services Routers, y Catalyst 3750G Integrated Wireless LAN Controllers, permite a atacantes remotos provocar una denegación de servicio (consumo de memoria y reinicio de dispositivo) a través de conexiones de administración SSH. También conocida como Bug ID CSCsw40789. • http://www.cisco.com/en/US/products/products_security_advisory09186a0080adb3d7.shtml http://www.securityfocus.com/bid/35817 http://www.securitytracker.com/id?1022605 http://www.vupen.com/english/advisories/2009/2021 • CWE-399: Resource Management Errors •

CVSS: 7.8EPSS: 0%CPEs: 25EXPL: 0

The administrative web interface on the Cisco Wireless LAN Controller (WLC) platform 4.2 before 4.2.205.0 and 5.x before 5.2.178.0, as used in Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, and 4400 Series Wireless Services Modules (WiSM), WLC Modules for Integrated Services Routers, and Catalyst 3750G Integrated Wireless LAN Controllers, allows remote attackers to cause a denial of service (device reload) via a malformed response to a (1) HTTP or (2) HTTPS authentication request, aka Bug ID CSCsx03715. La interfaz web de administración en la plataforma Cisco Wireless LAN Controller (WLC) v4.x anterior a v4.2.205.0, v5.1 anterior a v5.1.163.0, y v5.0 y v5.2 anterior a v5.2.178.0, usado en Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, y 4400 Series Wireless Services Modules (WiSM), WLC Modules para Integrated Services Routers, y Catalyst 3750G Integrated Wireless LAN Controllers, permite a atacantes remotos provocar una denegación de servicio (reinicio de dispositivo) a través de una respuesta mal formada a peticiones de autenticación (1) HTTP o (2) HTTPS. También conocida como Bug ID CSCsx03715. • http://www.cisco.com/en/US/products/products_security_advisory09186a0080adb3d7.shtml http://www.vupen.com/english/advisories/2009/2021 • CWE-399: Resource Management Errors •