Lucene search

K
cveMitreCVE-2001-0864
HistoryMar 09, 2002 - 5:00 a.m.

CVE-2001-0864

2002-03-0905:00:00
mitre
web.nvd.nist.gov
29
cve-2001-0864
cisco 12000
ios 12.0
acl
access restrictions
line cards
engine 2
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

Low

EPSS

0.004

Percentile

73.2%

Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not properly handle the implicit “deny ip any any” rule in an outgoing ACL when the ACL contains exactly 448 entries, which can allow some outgoing packets to bypass access restrictions.

Affected configurations

Nvd
Node
cisco12000_router
VendorProductVersionCPE
cisco12000_router*cpe:2.3:h:cisco:12000_router:*:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

Low

EPSS

0.004

Percentile

73.2%

Related for CVE-2001-0864