Computer Security
[EN] securityvulns.ru
no-pyccku



See also
  APPLE : Numbers for iOS 1.5
  APPLE : Pages for iOS 1.5
  CISCO : IOS 15.2
  CISCO : IOS 15.1
  CISCO : IOS 15.0
  CISCO : Cisco IOS 12.4
  CISCO : Cisco IOS 12.3
  CISCO : Cisco IOS 12.2
  CISCO : Cisco IOS 12.1
  CISCO : Cisco IOS 12.0
  CISCO : IOS 12.3
  CISCO : IOS 12.2
  CISCO : IOS 11.3
  CISCO : IOS 11.0
  CISCO : IOS 12.1
Name:CISCO : IOS 12.0

7!Cisco IOS multiple security vulnerabilities
document DoS via SIP, DoS via ICGMP, SSL information leak, DoS in voice protocols application layer gateway for NAT.
7!Cisco routers IOS multiple security vulnerabilities
document DoS via TCP connections, multiple vulnerabilities in IPSec, H.323, SIP. SCCP, MPLS protocols.
9!Multiple TCP implementations different security vulnerabilities
updated since 09.09.2009
document Multiple security vulnerabilities in different operation sustems caused by resource exhaustions on maintaining TCP states table.
8!Cisco IOS multiple security vulnerabilities
updated since 23.09.2009
document Multiple DoS conditions, restriction bypass.
6!Cisco IOS BGP DoS
document Few denial of service conditions on BGP updates with 4-bytes AS numbers.
7!Cisco IOS multiple security vulnerabilities
updated since 26.03.2009
document Multiple DoS conditions in TCP, cTCP, Mobile IP/Mobile IPv6, WebVPN, SSLVPN implementations, SCP privilege escalation.
7!Cisco IOS, Cisco 10000, uBR10012, uBR7200 and Cisco UCM multiple security vulnerabilities
document DoS with L2TP, MPLS, IPS, SIP, SSL vulnerabilities, information leaks, multiple multicast security vulnerabilities, NAT SCP, IOS Software firewall application inspection security vulnerabilities.
6!Multiple SNMPv3 authentication implementations bypass
document User-supplied number of signature bytes are checked on signature validation.
8!CISCO routers IOS multiple security vulnerabilities
updated since 26.03.2008
document MVPN information leak, UDP DoS, multiple VPDN and DLSw DoS, multiple OSPF and MPLS vulnerabilities.
 Cisco routers IOS IPv6 information leakage
document IPv6 header contains 16 bytes of non-initialized memory from router's address space.
 Cisco routers IOS Cisco Next Hop Resolution Protocol DoS
document Crash on NHRP packets parsing.
6!Cisco routers SSL DoS
document Multiple vulnerabilities on SSL packets parsing.
10!Cisco routers and code execution with IP options DoS
document ICMP, UDP or TCP packets with some IP options set can cause device reload and potentially code execution.
6!Cisco routers memory leak DoS
document Memory leak on incoming TCP packets.
6!Cisco routers IPv6 DoS
document Router crash on parsing IPv6 packet RH (routing header).
 Cisco IOS Data-link Switching DoS
document Device reload on malformed DLSw message parsing.
 Cisco IOS access control lists bypass with GRE
document Under some conditions it's possible to create GRE with payload to be forwarded from router's IP.
 Cisco routers IOS TCL privilege escalation
document User can execute any command by switching to TCL (Tool Command Language) mode.
 Cisco IOS Stack Group Bidding Protocol (SGBP) DoS
document Invalid SGBP (UDP/9900) packet can cause router to hang if sgbp group is defined
7!The Holy Grail: Cisco IOS shellcode And Exploitation Techniques
updated since 30.07.2005
document Michaels Lynn's presentation on Cisco routers malicious code execution possibility.
7!Cisco routers IOS IPv6 vulnerability
document Bug during IPv6 packets parsing leads to router crash and potentially to code execution.
 Cisco routers IOS ssh DoS
document Bugs in ssh in conbination with TACACS+ causes router to hang or reload.
7!Multiple Cisco routers IOS DoS vulnerabilities
document Malcrafted IPv6, BGP or MPLS packets can cause router to reboot.
6!Cisco IOS telnet DoS
document Specially crafted telnet or reverse telnet connection causes all TCP based services to fail.
6!Cisco IOS OSPF DoS
document Malformed OSPF packet causes router to reboot.
6!Cisco BGP DoS
document Router reboots on malformed BGP packet.
7!TCP RST packets spoofing
updated since 21.04.2004
document By sending spoofed RST it's possible to terminate established TCP connection. unlike TPC hijacking attacks there is no need for exact TCP sequence number, and number can be any number from handshaked TCP window. It significantly increases attack efficiency. In NetBSD sequence number for RST is not checked at all, it makes it possible to terminate session with single packet.
6!Cisco SNMP DoS
document Malformed packet can cause router to crash.
7!Multiple bugs in H.323 implementations
   
 Cisco IOS HTTP buffer overflow
document Buffer overflow on GET request over 2 GB.
9!DoS against many Cisco routers
updated since 17.07.2003
document A device receiving specifically crafted IPv4 packets will force the inbound interface to stop processing traffic.
10!Mulbiple bugs in different SSH2 realizations
updated since 17.12.2002
document Differeng bugs on malformed packets processing during keys exchange.
 Cisco EIGRP DoS
document DoS on receiving huge neighbour list.
6!Cisco SSH multiple bugs
updated since 28.06.2001
document It's possible to insert command and intercept data from ssh session.
 Cisco IOS ICMP redirects DoS
document ICMP redirect flood causes memory exhaustion.
 Buffer overflow in CIsco NTP
   
 Утечка информации в CISCO (information leakage)
   
6!Проблемы в SNMP Cisco/Olicom/3Com (ILMI SNMP community)
updated since 28.02.2001
   
6!Проблемы в IOS Firewall Feature Set (protection bypass)
   
 Arp spoofing в CISCO
   
6!Несанкционированный доступ через HTTP в Cisco (unauthorized access).
   
 Telnet досутп в Cisco 6400 (unauthorized access)
updated since 21.04.2000
   
 Дырка в маршрутизаторах Cisco (Initial TCP sequence number)
   
 DoS Через веб-интерфейс в Cisco IOS (web DoS)
   
 Проблема с маршрутизирующими свитчами Gigabit
   
                    

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru