Cisco routers 9.17 and earlier allow remote attackers to bypass security restrictions via certain IP source routed packets that should normally be denied using the "no ip source-route" command.
1993-04-22T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Hardware | cisco | router | ≤ 9.17 | Yes |
Hardware | cisco | router | 8.2 | Yes |
Hardware | cisco | router | 8.3 | Yes |
Hardware | cisco | router | 9.0 | Yes |
Hardware | cisco | router | 9.1 | Yes |