This script is (C) 2010-2014 Tenable Network Security, Inc.
The remote device is missing a vendor-supplied security patch
Network Time Protocol (NTP) is used to synchronize time on multiple
devices. A vulnerability has been discovered in the NTP daemon query
processing functionality. This vulnerability has been publicly
Other Cisco software applications may run on Solaris platforms and
where those products have not specifically been identified, customers
should install security patches regularly in accordance with their
normal maintenance procedures.
Cisco is continuing to research this issue in other products that may
be affected. Unless explicitly stated otherwise, all other products are
considered to be unaffected.
There are workarounds available to mitigate the effects.
See also :
Apply the relevant patch referenced in Cisco Security Advisory
Risk factor :
Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 8.3
Public Exploit Available : true
Nessus Plugin ID: 48965 (cisco-sa-20020508-ntp-vulnerabilityhttp.nasl)
Bugtraq ID: 2540
CVE ID: CVE-2001-0414
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.