This script is (C) 2010-2014 Tenable Network Security, Inc.
The remote device is missing a vendor-supplied security patch.
A vulnerability in the Cisco implementation of Multicast Virtual
Private Network (MVPN) is subject to exploitation that can allow a
malicious user to create extra multicast states on the core routers or
receive multicast traffic from other Multiprotocol Label Switching
(MPLS) based Virtual Private Networks (VPN) by sending specially
Cisco has released free software updates that address this
vulnerability. Workarounds that mitigate this vulnerability are
See also :
Apply the relevant patch referenced in Cisco Security Advisory
Risk factor :
High / CVSS Base Score : 7.5
CVSS Temporal Score : 5.5
Public Exploit Available : false
Nessus Plugin ID: 49012 (cisco-sa-20080326-mvpnhttp.nasl)
Bugtraq ID: 28464
CVE ID: CVE-2008-1156
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.