Cisco 7xx TCP and HTTP Vulnerabilities

[入库:2006年4月5日] [更新:2007年10月10日]

本文简介:This notice addresses two unrelated security vulnerabilities in the software used on the Cisco 7xx series of small-office and home-office routers. These vulnerabilities affect only the 7xx series routers (not the 7xxx

The first vulnerability, which has been assigned Cisco bug ID CSCdm03231,

can be used to cause system reloads, and therefore denial of service, using

TCP connections to the routers' TELNET ports. 

 

The second vulnerability has not been assigned a bug ID. 7xx routers running

software versions 3.2(5) through 4.2(3) support a simple HTTP server. This

HTTP server is enabled by default. Unless the server is explicitly disabled,

it can be used to make changes to the router configuration, and/or to gain

information about that configuration. This is intentional behavior, but is

mentioned in this notice because it appears that customers have been caught

unawares by it.

本方案相关附件

本文关键:,,Cisco 7xx TCP , HTTP,
 

本站最佳浏览方式为 分辨率 1024x768 IE 6.0(或更高版本的 IE浏览器)

go top