This script is (C) 2010-2014 Tenable Network Security, Inc.
The remote device is missing a vendor-supplied security patch.
Cisco devices running affected versions of Cisco IOS Software are
vulnerable to a denial of service (DoS) attack if configured for IP
tunnels and Cisco Express Forwarding.
Cisco has released free software updates that address this
See also :
Apply the relevant patch referenced in Cisco Security Advisory
Risk factor :
High / CVSS Base Score : 7.1
CVSS Temporal Score : 5.9
Public Exploit Available : true
Nessus Plugin ID: 49048 (cisco-sa-20090923-tunnelshttp.nasl)
Bugtraq ID: 36500
CVE ID: CVE-2009-2872CVE-2009-2873
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.