3303 vulnerabilidades · Networking Orden: CVSS EPSS Año ID
CVE-2004-1460
Software Genérico Networking
N/A
UNKNOWN
EPSS
0.7%
2004 1 PoC

Cisco Secure Access Control Server (ACS) 3.2(3) and earlier, when configured with an anonymous bind in Novell Directory Services (NDS) and authenticating NDS users with NDS, allows remote attackers to gain unauthorized access to AAA clients via a blank password.

CVE-2004-1434
Software Genérico Networking
N/A
UNKNOWN
EPSS
2.0%
2004 1 PoC

Multiple versions of Cisco ONS 15327, ONS 15454, and ONS 15454 SDH, including 4.1(0) to 4.1(2), 4.5(x), 4.0(0) to 4.0(2), and earlier versions, allows remote attackers to cause a denial of service (control card reset) via malformed SNMP packets.

CVE-2013-3091
Software Genérico Web Networking
N/A
UNKNOWN
EPSS
5.0%
2013 1 PoC

An Authentication Bypass vulnerability in Belkin N300 (F7D7301v1) router allows remote attackers to bypass authentication using "Javascript debugging."

CVE-2004-0411
Software Genérico Networking
N/A
UNKNOWN
EPSS
6.5%
2004 1 PoC

The URI handlers in Konqueror for KDE 3.2.2 and earlier do not properly filter "-" characters that begin a hostname in a (1) telnet, (2) rlogin, (3) ssh, or (4) mailto URI, which allows remote attackers to manipulate the options that are passed to the associated programs, possibly to read arbitrary files or execute arbitrary code.

CVE-2004-0518
Software Genérico Networking
N/A
UNKNOWN
EPSS
0.6%
2004 1 PoC

Unknown vulnerability in AppleFileServer for Mac OS X 10.3.4, related to "the use of SSH and reporting errors," has unknown impact and attack vectors.

CVE-2004-1459
Software Genérico Networking
N/A
UNKNOWN
EPSS
0.8%
2004 1 PoC

Cisco Secure Access Control Server (ACS) 3.2, when configured as a Light Extensible Authentication Protocol (LEAP) RADIUS proxy, allows remote attackers to cause a denial of service (device crash) via certain LEAP authentication requests.

CVE-2004-0044
Software Genérico Networking
N/A
UNKNOWN
EPSS
0.9%
2004 1 PoC

Cisco Personal Assistant 1.4(1) and 1.4(2) disables password authentication when "Allow Only Cisco CallManager Users" is enabled and the Corporate Directory settings refer to the directory service being used by Cisco CallManager, which allows remote attackers to gain access with a valid username.

CVE-2004-0551
Software Genérico Web Networking
N/A
UNKNOWN
EPSS
0.6%
2004 1 PoC

Cisco CatOS 5.x before 5.5(20) through 8.x before 8.2(2) and 8.3(2)GLX, as used in Catalyst switches, allows remote attackers to cause a denial of service (system crash and reload) by sending invalid packets instead of the final ACK portion of the three-way handshake to the (1) Telnet, (2) HTTP, or (3) SSH services, aka "TCP-ACK DoS attack."

CVE-2004-0054
Software Genérico Networking
N/A
UNKNOWN
EPSS
8.2%
2004 1 PoC

Multiple vulnerabilities in the H.323 protocol implementation for Cisco IOS 11.3T through 12.2T allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.

CVE-2014-5246
Software Genérico Networking
N/A
UNKNOWN
EPSS
23.8%
2014 1 PoC

The Shenzhen Tenda Technology Tenda A5s router with firmware 3.02.05_CN allows remote attackers to bypass authentication and gain administrator access by setting the admin:language cookie to zh-cn.

CVE-2013-7307
Software Genérico Networking
N/A
UNKNOWN
EPSS
0.5%
2013 2 PoCs

The OSPF implementation on the Brocade Vyatta vRouter with software before 6.6R1 does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service (routing disruption) or obtain sensitive packet information via a crafted LSA packet, a related issue to CVE-2013-0149.

CVE-2004-1759
Software Genérico Networking
N/A
UNKNOWN
EPSS
3.7%
2004 1 PoC

Cisco voice products, when running the IBM Director Agent on IBM servers before OS 2000.2.6, allows remote attackers to cause a denial of service (CPU consumption) via arbitrary packets to TCP port 14247, as demonstrated using port scanning.

CVE-2004-0352
Software Genérico Networking
N/A
UNKNOWN
EPSS
0.8%
2004 1 PoC

Cisco 11000 Series Content Services Switches (CSS) running WebNS 5.0(x) before 05.0(04.07)S, and 6.10(x) before 06.10(02.05)S allow remote attackers to cause a denial of service (device reset) via a malformed packet to UDP port 5002.

CVE-2004-2760
Software Genérico Networking
N/A
UNKNOWN
EPSS
0.3%
2004 1 PoC

sshd in OpenSSH 3.5p1, when PermitRootLogin is disabled, immediately closes the TCP connection after a root login attempt with the correct password, but leaves the connection open after an attempt with an incorrect password, which makes it easier for remote attackers to guess the password by observing the connection state, a different vulnerability than CVE-2003-0190. NOTE: it could be argued that in most environments, this does not cross privilege boundaries without requiring leverage of a separate vulnerability.

CVE-2004-0710
Software Genérico Networking Windows
N/A
UNKNOWN
EPSS
1.6%
2004 1 PoC

IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers running IOS before 12.2(17b)SXA, before 12.2(17d)SXB, or before 12.2(14)SY03 could allow remote attackers to cause a denial of service (device crash and reload) via a malformed Internet Key Exchange (IKE) packet.

CVE-2004-0234
Software Genérico Networking
N/A
UNKNOWN
EPSS
8.5%
2004 2 PoCs

Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewall, allow remote attackers or local users to execute arbitrary code via long directory or file names in an LHA archive, which triggers the overflow when testing or extracting the archive.

CVE-2004-0244
Software Genérico Networking
N/A
UNKNOWN
EPSS
1.2%
2004 1 PoC

Cisco 6000, 6500, and 7600 series systems with Multilayer Switch Feature Card 2 (MSFC2) and a FlexWAN or OSM module allow local users to cause a denial of service (hang or reset) by sending a layer 2 frame packet that encapsulates a layer 3 packet, but has inconsistent length values with that packet.

CVE-2004-0498
Software Genérico Networking
N/A
UNKNOWN
EPSS
0.6%
2004 1 PoC

The H.323 protocol agent in StoneSoft firewall engine 2.2.8 and earlier allows remote attackers to cause a denial of service (crash) via crafted H.323 packets.

CVE-2013-5038
Software Genérico Networking
N/A
UNKNOWN
EPSS
0.8%
2013 2 PoCs

The HOT HOTBOX router with software 2.1.11 allows remote attackers to bypass authentication by configuring a source IP address that had previously been used for an authenticated session.

CVE-2004-1112
Software Genérico Networking
N/A
UNKNOWN
EPSS
0.9%
2004 1 PoC

The buffer overflow trigger in Cisco Security Agent (CSA) before 4.0.3 build 728 waits five minutes for a user response before terminating the process, which could allow remote attackers to bypass the buffer overflow protection by sending additional buffer overflow attacks within the five minute timeout period.