VendorsCiscoios12.1\(8b\)ex4
Vulnerabilities

Cisco IOS 12.1\(8b\)ex4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2007-2586
The FTP Server in Cisco IOS 11.3 through 12.4 does not properly check user authorization, which allows remote attackers to execute arbitrary code, and have other impact including reading startup-config, as demonstrated by a crafted MKD command that involves access to a VTY device and overflows a buffer, aka bug ID CSCek55259.
Published 2007-05-09 · Modified
9.31 PoCEPSS 0.144
CVE-2016-6380
The DNS forwarder in Cisco IOS 12.0 through 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.15 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (data corruption or device reload) via a crafted DNS response, aka Bug ID CSCup90532.
Published 2016-10-05 · Modified
8.3EPSS 0.030
CVE-2019-1748
Cisco IOS and IOS XE Software Network Plug-and-Play Agent Certificate Validation Vulnerability
Published 2019-03-27 · Modified
7.4EPSS 0.012
CVE-2018-0197
Cisco IOS and IOS XE Software VLAN Trunking Protocol Denial of Service Vulnerability
Published 2018-10-05 · Analyzed
6.5EPSS 0.006
CVE-2013-0149
The OSPF implementation in Cisco IOS 12.0 through 12.4 and 15.0 through 15.3, IOS-XE 2.x through 3.9.xS, ASA and PIX 7.x through 9.1, FWSM, NX-OS, and StarOS before 14.0.50488 does not properly validate Link State Advertisement (LSA) type 1 packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service (routing disruption) or obtain sensitive packet information via a (1) unicast or (2) multicast packet, aka Bug IDs CSCug34485, CSCug34469, CSCug39762, CSCug63304, and CSCug39795.
Published 2013-08-03 · Modified
5.8EPSS 0.025