How to Buy
This script is (C) 2010-2014 Tenable Network Security, Inc.
The remote device is missing a vendor-supplied security patch.
Cisco IOS device may crash while processing malformed Secure Sockets
Layer (SSL) packets. In order to trigger these vulnerabilities, a
malicious client must send malformed packets during the SSL protocol
exchange with the vulnerable device.
Successful, repeated exploitation of any of these vulnerabilities may
lead to a sustained denial of service (DoS). These vulnerabilities
are not known to compromise either the confidentiality or integrity of
the data or the device. These vulnerabilities are also not believed to
allow an attacker to decrypt any previously encrypted information.
Cisco has made free software available to address these
vulnerabilities for affected customers. There are workarounds available
to mitigate the effects of these vulnerabilities.
See also :
Apply the relevant patch referenced in Cisco Security Advisory
Risk factor :
High / CVSS Base Score : 7.8
CVSS Temporal Score : 5.8
Public Exploit Available : false
Nessus Plugin ID: 49005 (cisco-sa-20070522-SSLhttp.nasl)
Bugtraq ID: 24097
CVE ID: CVE-2007-2813
Nessus Professional: Scan unlimited IPs, run compliance checks & moreNessus Cloud: The power of Nessus for teams – from the cloud
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.