Skip to main content

Vendor/product archive

cisco / cbos CVEs

Beta · best-effort

9 CVEs tagged to cisco / cbos0 Critical, 2 High, 6 Medium, 1 Low, 0 Unrated.

CVE-2002-0886

Published Oct 4, 2002

Cisco DSL CPE devices running CBOS 2.4.4 and earlier allows remote attackers to cause a denial of service (hang or memory consumption) via (1) a large packet to the DHCP port, (2)…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0751

Published Oct 18, 2001

Cisco switches and routers running CBOS 2.3.8 and earlier use predictable TCP Initial Sequence Numbers (ISN), which allows remote attackers to spoof or hijack TCP connections.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0752

Published Oct 18, 2001

Cisco CBOS 2.3.8 and earlier allows remote attackers to cause a denial of service via an ICMP ECHO REQUEST (ping) with the IP Record Route option set.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0753

Published Oct 18, 2001

Cisco CBOS 2.3.8 and earlier stores the passwords for (1) exec and (2) enable in cleartext in the NVRAM and a configuration file, which could allow unauthorized users to obtain th…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0754

Published Oct 18, 2001

Cisco CBOS 2.3.8 and earlier allows remote attackers to cause a denial of service via a series of large ICMP ECHO REPLY (ping) packets, which cause it to enter ROMMON mode and sto…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1064

Published Aug 31, 2001

Cisco 600 series routers running CBOS 2.0.1 through 2.4.2ap allows remote attackers to cause a denial of service via multiple connections to the router on the (1) HTTP or (2) teln…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1065

Published Aug 31, 2001

Web-based configuration utility in Cisco 600 series routers running CBOS 2.0.1 through 2.4.2ap binds itself to port 80 even when web-based configuration services are disabled, whi…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0444

Published Jul 2, 2001

Cisco CBOS 2.3.0.053 sends output of the "sh nat" (aka "show nat") command to the terminal of the next user who attempts to connect to the router via telnet, which could allow tha…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1