Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2000-0380

Overview

Vulnerability Score 7.1 7.1
CVE Id CVE-2000-0380
Last Modified 10 Sep 2008 12:00:00
Published 26 Apr 2000 12:00:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2000-0380

Summary

The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string.

Vulnerable Systems

Operating System

  • Cisco Ios 11.1

  • Cisco Ios 11.2

  • Cisco Ios 11.2%2810%29

  • Cisco Ios 11.2%2810%29bc

  • Cisco Ios 11.2%2817%29

  • Cisco Ios 11.2%284%29f1

  • Cisco Ios 11.2%288%29

  • Cisco Ios 11.2%288%29p

  • Cisco Ios 11.2%289%29p

  • Cisco Ios 11.2%289%29xa

  • Cisco Ios 11.2p

  • Cisco Ios 11.3

  • Cisco Ios 11.3%281%29

  • Cisco Ios 11.3%281%29ed

  • Cisco Ios 11.3%281%29t

  • Cisco Ios 11.3t

  • Cisco Ios 12.0

  • Cisco Ios 12.0%281%29w

  • Cisco Ios 12.0%281%29xa3

  • Cisco Ios 12.0%281%29xb

  • Cisco Ios 12.0%281%29xe

  • Cisco Ios 12.0%282%29

  • Cisco Ios 12.0%282%29xc

  • Cisco Ios 12.0%282%29xd

  • Cisco Ios 12.0%282%29xf

  • Cisco Ios 12.0%282%29xg

  • Cisco Ios 12.0%283%29t2

  • Cisco Ios 12.0%284%29

  • Cisco Ios 12.0%284%29s

  • Cisco Ios 12.0%284%29t

  • Cisco Ios 12.0%285%29

  • Cisco Ios 12.0%285%29t1

  • Cisco Ios 12.0%286%29

  • Cisco Ios 12.0%287%29t

  • Cisco Ios 12.0%288%29

  • Cisco Ios 12.0%289%29s

  • Cisco Ios 12.0db

  • Cisco Ios 12.0s

  • Cisco Ios 12.0t


References

BID - 1154

OSVDB - 1302

CISCO - 20000514 Cisco IOS HTTP Server Vulnerability

BUGTRAQ - 20000426 Cisco HTTP possible bug:


Last Updated: 27 May 2016 10:35:41