TILLBAKA TILL DASHBOARD

CVE-1999-1216

Källa: cve@mitre.org

UNKNOWN
7.5 CVSS Score

EXPLOTATION STATUS & MITIGATIONS

EXPLOIT STATUS
NO KNOWN EXPLOIT
REMEDIATION
PATCH AVAILABLE

PÅVERKADE KLIENTER/MJUKVARA

Cisco Router

BESKRIVNING

Cisco routers 9.17 and earlier allow remote attackers to bypass security restrictions via certain IP source routed packets that should normally be denied using the "no ip source-route" command.

TEKNISK DATA

{
  "id": "CVE-1999-1216",
  "sourceIdentifier": "cve@mitre.org",
  "published": "1993-04-22T04:00:00.000",
  "lastModified": "2025-04-03T01:03:51.193",
  "vulnStatus": "Deferred",
  "cveTags": [],
  "descriptions": [
    {
      "lang": "en",
      "value": "Cisco routers 9.17 and earlier allow remote attackers to bypass security restrictions via certain IP source routed packets that should normally be denied using the \"no ip source-route\" command."
    }
  ],
  "metrics": {
    "cvssMetricV2": [
      {
        "source": "nvd@nist.gov",
        "type": "Primary",
        "cvssData": {
          "version": "2.0",
          "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "baseScore": 7.5,
          "accessVector": "NETWORK",
          "accessComplexity": "LOW",
          "authentication": "NONE",
          "confidentialityImpact": "PARTIAL",
          "integrityImpact": "PARTIAL",
          "availabilityImpact": "PARTIAL"
        },
        "baseSeverity": "HIGH",
        "exploitabilityScore": 10,
        "impactScore": 6.4,
        "acInsufInfo": false,
        "obtainAllPrivilege": false,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": true,
        "userInteractionRequired": false
      }
    ]
  },
  "weaknesses": [
    {
      "source": "nvd@nist.gov",
      "type": "Primary",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "configurations": [
    {
      "nodes": [
        {
          "operator": "OR",
          "negate": false,
          "cpeMatch": [
            {
              "vulnerable": true,
              "criteria": "cpe:2.3:h:cisco:router:*:*:*:*:*:*:*:*",
              "versionEndIncluding": "9.17",
              "matchCriteriaId": "990D0766-8FDF-43A0-B46C-09F2E75B4760"
            },
            {
              "vulnerable": true,
              "criteria": "cpe:2.3:h:cisco:router:8.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "70C8F944-01A5-45E8-B963-E68B85F86165"
            },
            {
              "vulnerable": true,
              "criteria": "cpe:2.3:h:cisco:router:8.3:*:*:*:*:*:*:*",
              "matchCriteriaId": "DE7D0623-0F18-4486-B4DF-B49635A70EDF"
            },
            {
              "vulnerable": true,
              "criteria": "cpe:2.3:h:cisco:router:9.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "9EA7D7D0-B445-4F24-A86E-569291EA2456"
            },
            {
              "vulnerable": true,
              "criteria": "cpe:2.3:h:cisco:router:9.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "27604364-99CA-4942-ABCD-8F2B4CB20092"
            }
          ]
        }
      ]
    }
  ],
  "references": [
    {
      "url": "http://ciac.llnl.gov/ciac/bulletins/d-15.shtml",
      "source": "cve@mitre.org",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ]
    },
    {
      "url": "http://www.cert.org/advisories/CA-1993-07.html",
      "source": "cve@mitre.org",
      "tags": [
        "Patch",
        "Third Party Advisory",
        "US Government Resource"
      ]
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/541",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://ciac.llnl.gov/ciac/bulletins/d-15.shtml",
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ]
    },
    {
      "url": "http://www.cert.org/advisories/CA-1993-07.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Patch",
        "Third Party Advisory",
        "US Government Resource"
      ]
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/541",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ]
}

Status

Vuln Status:Deferred
Publicerad:4/22/1993
Uppdaterad:4/3/2025

Vector String

AV:N/AC:L/Au:N/C:P/I:P/A:P
ÖPPNA I NVD