CVE-2002-1557

3 documents3 sources
Severity
5.0MEDIUM
EPSS
0.5%
top 34.61%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 31
Latest updateApr 30

Description

Cisco ONS15454 and ONS15327 running ONS before 3.4 allows attackers to cause a denial of service (reset to TCC, TCC+, TCCi or XTC) via a malformed HTTP request that does not contain a leading / (slash) character.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-rvqh-qh4f-c556: Cisco ONS15454 and ONS15327 running ONS before 32022-04-30
CVEList
CVE-2002-1557: Cisco ONS15454 and ONS15327 running ONS before 32003-03-18
CVE-2002-1557 (MEDIUM CVSS 5) | Cisco ONS15454 and ONS15327 running | cvebase.io