Cisco IOS ICMP Redirect Message Spoofing Remote DoS (CSCdx92043)

high Nessus Plugin ID 11379

Synopsis

The remote device is missing a vendor-supplied security patch

Description

Sending bogus ICMP redirect packets, a malicious user can either disrupt or intercept communication from a router.

This vulnerability is documented with the CISCO bug ID CSCdx92043

Solution

Upgrade your version of IOS

See Also

https://www.securityfocus.com/archive/1/311336

Plugin Details

Severity: High

ID: 11379

File Name: CSCdx92043.nasl

Version: 1.22

Type: local

Family: CISCO

Published: 3/14/2003

Updated: 3/27/2020

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: High

Base Score: 9.3

Temporal Score: 6.9

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:cisco:ios

Required KB Items: SNMP/community, SNMP/sysDesc, CISCO/model

Exploit Ease: No known exploits are available

Reference Information

CVE: CVE-2003-1398

BID: 6823

CWE: 200