cbcvebase.
CVE-2008-3803
published 2008-09-26

CVE-2008-3803: A "logic error" in Cisco IOS 12.0 through 12.4, when a Multiprotocol Label Switching (MPLS) VPN with extended communities is configured, sometimes causes a…

medium5.1CVSS 3.1
AVNACHAuNCPIPAP
A "logic error" in Cisco IOS 12.0 through 12.4, when a Multiprotocol Label Switching (MPLS) VPN with extended communities is configured, sometimes causes a corrupted route target (RT) to be used, which allows remote attackers to read traffic from other VPNs in opportunistic circumstances.

Affected

4 ranges
VendorProductVersion rangeFixed in
ciscoios
ciscoios
ciscoios
ciscoios_mpls_vpn_may_leak