|
|||
Rule General Information |
---|
Release Date: | 2017-08-28 | |
Rule Name: | Cisco IOS HTTP %% Vulnerability (CVE-2000-0380) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string. | |
Impact: | A denial of service attack exists in versions of Cisco IOS, running on a variety of different router hardware. If the router is configured to have a web server running for configuration and other information a user can cause the router to crash. | |
Affected OS: | Network Device | |
Reference: | CVE-2000-0380 SecurityFocusBID:1154 OSVDB:1302 |
|
Solutions |
---|
Upgrading eliminates this vulnerability. |