CVE-1999-0193
published 1997-12-01CVE-1999-0193: Denial of service in Ascend and 3com routers, which can be rebooted by sending a zero length TCP option.
PriorityP418medium5CVSS 2.0
AVNACLAuNCNINAP
EXPLOIT
EPSS
4.89%
91.0th percentile
Denial of service in Ascend and 3com routers, which can be rebooted by sending a zero length TCP option.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ascend | cascadeview_ux | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
Ascend R 4.5 Ci12 - Denial of Service
exploitdb·1998-03-17
CVE-1999-0193 Ascend R 4.5 Ci12 - Denial of Service
Ascend R 4.5 Ci12 - Denial of Service
---
#
#source: https://www.securityfocus.com/bid/1855/info
#
#A vulnerability exists in the operating system of some Ascend routers. If an invalid TCP packet (of zero length) is sent to the administration port of Ascend Routers 4.5Ci12 #or earlier, the result will be a crash and reboot of the attacked router, accomplishing a denial of service attack.
#
#Note that 3Com is reportedly also vulnerable, but it is not verified which versions of IOS are exploitable.
#
#!/usr/bin/perl
#
# Ascend Kill II - perl version
# (C) 1998 Rootshell - http://www.rootshell.com/ -
#
# Released: 3/17/98
#
# Thanks to Secure Networks. See SNI-26: Ascend Router Security Issues
# (http://www.secnet.com/sni-advisories/sni-26.ascendrouter.advisory.html)
#
# NOTE: This progra
Exploit-DB
Ascend R 4.5 Ci12 - Denial of Service
exploitdb·1998-03-16
CVE-1999-0193 Ascend R 4.5 Ci12 - Denial of Service
Ascend R 4.5 Ci12 - Denial of Service
---
/*
source: https://www.securityfocus.com/bid/1855/info
A vulnerability exists in the operating system of some Ascend routers. If an invalid TCP packet (of zero length) is sent to the administration port of Ascend Routers 4.5Ci12 or earlier, the result will be a crash and reboot of the attacked router, accomplishing a denial of service attack.
Note that 3Com is reportedly also vulnerable, but it is not verified which versions of IOS are exploitable.
*/
/* Update, 3/20/98: Ascend has released 5.0Ap46 which corrects this bug.
* see ftp.ascend.com.
*/
/*
* Ascend Kill II - C version
*
* (C) 1998 Rootshell - http://www.rootshell.com/
*
* Released: 3/16/98
*
* Thanks to Secure Networks. See SNI-26: Ascend Router Security Issues
* (http://www.secne
No writeups or analysis indexed.
1997-12-01
Published