CVE-2000-1055

3 documents3 sources
Severity
10.0CRITICAL
EPSS
1.5%
top 18.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 11
Latest updateApr 30

Description

Buffer overflow in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large TACACS+ packet.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

NVDcisco/secure_access_control_server2.1, 2.3\(3\), 2.4\(2\)+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-5r9w-3f6v-8849: Buffer overflow in CiscoSecure ACS Server 22022-04-30
CVEList
CVE-2000-1055: Buffer overflow in CiscoSecure ACS Server 22001-01-22
CVE-2000-1055 (CRITICAL CVSS 10) | Buffer overflow in CiscoSecure ACS | cvebase.io