SecureScoutLogo.jpg
CISCO IOS Software Outdated Vulnerability



Go to Vulnerabilities List


General Info


TC: 12007
Description: The IOS software run by this CISCO device is no longer supported. A number of vulnerabilities may be present in the device, depending on the patch level.
TC Impact: Gather Info



Specific Operations and Actions:


Vulnerability Publication: N.A.
Advisory Copyright: N.A.
Summary: An IP router, which is a critical device on any network, is running an old unsupported OS version. Known vulnerabilities may exist. Getting support from the vendor may also be an issue.
Risk: High
CVSS 2.0 metrics: Access Vector: Network
Access Complexity: Low
Authentication: None
Confidentiality Impact: Complete
Integrity Impact: Complete
Availability Impact: Complete
CVSS 2.0 Base Score: 10
Vulnerability Impact: Attack
Host Impact: Possibly outdated and unsupported device.
Nature of Remediation: Upgrade router or update IOS software.
Step required to fix the reported vulnerability:

***** Solution type: Upgrade Software *****

Depending on your support contract with CISCO, you can obtain an IOS update.
Make an inquiry with your CISCO dealer or directly with CISCO through their Web site.
See references for more details.



Glossary and References :


References:
* CISCO:
http://www.cisco.com/warp/public/cc/cisco/mkt/ios/rel/prodlit/367_pb.htm
* CISCO:
http://www.cisco.com/warp/public/707/1.html
* CISCO:
http://www.cisco.com/warp/public/707/2.html
* CISCO:
http://www.cisco.com

CVE Link: CVE-1999-0662
CVE Compatible

Glossary: CISCO
IOS


© 2003-2010 NexantiS Corporation (www.securescout.com)
SecureScout is a trademark of NexantiS
All Rights Reserved
All products names referenced herein are trademarks of their respective companies

SecureScout products are certified:
CVE Compatible
SANS TOP 20 Compatible
CVSS Compatible (Common Vulnerability Scoring System)