First published: Wed Apr 26 2000(Updated: )
The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =12.0\(5\) | |
Cisco IOS | =12.0\(6\) | |
Cisco IOS | =12.0\(5\)t1 | |
Cisco IOS | =12.0\(1\)w | |
Cisco IOS | =11.3\(1\) | |
Cisco IOS | =12.0\(1\)xb | |
Cisco IOS | =12.0\(2\)xd | |
Cisco IOS | =12.0\(2\) | |
Cisco IOS | =12.0\(9\)s | |
Cisco IOS | =11.2\(8\)p | |
Cisco IOS | =12.0\(2\)xg | |
Cisco IOS | =11.3\(1\)ed | |
Cisco IOS | =12.0t | |
Cisco IOS | =12.0\(1\)xe | |
Cisco IOS | =11.2\(4\)f1 | |
Cisco IOS | =12.0\(7\)t | |
Cisco IOS | =11.3 | |
Cisco IOS | =11.2p | |
Cisco IOS | =12.0db | |
Cisco IOS | =12.0\(2\)xf | |
Cisco IOS | =11.2 | |
Cisco IOS | =12.0\(4\)t | |
Cisco IOS | =12.0\(4\) | |
Cisco IOS | =11.2\(8\) | |
Cisco IOS | =12.0\(1\)xa3 | |
Cisco IOS | =12.0\(2\)xc | |
Cisco IOS | =11.3t | |
Cisco IOS | =12.0\(8\) | |
Cisco IOS | =11.2\(9\)p | |
Cisco IOS | =12.0s | |
Cisco IOS | =11.2\(10\)bc | |
Cisco IOS | =12.0 | |
Cisco IOS | =11.2\(17\) | |
Cisco IOS | =11.1 | |
Cisco IOS | =12.0\(3\)t2 | |
Cisco IOS | =12.0\(4\)s | |
Cisco IOS | =11.3\(1\)t | |
Cisco IOS | =11.2\(10\) | |
Cisco IOS | =11.2\(9\)xa | |
=11.1 | ||
=11.2 | ||
=11.2\(4\)f1 | ||
=11.2\(8\) | ||
=11.2\(8\)p | ||
=11.2\(9\)p | ||
=11.2\(9\)xa | ||
=11.2\(10\) | ||
=11.2\(10\)bc | ||
=11.2\(17\) | ||
=11.2p | ||
=11.3 | ||
=11.3\(1\) | ||
=11.3\(1\)ed | ||
=11.3\(1\)t | ||
=11.3t | ||
=12.0 | ||
=12.0\(1\)w | ||
=12.0\(1\)xa3 | ||
=12.0\(1\)xb | ||
=12.0\(1\)xe | ||
=12.0\(2\) | ||
=12.0\(2\)xc | ||
=12.0\(2\)xd | ||
=12.0\(2\)xf | ||
=12.0\(2\)xg | ||
=12.0\(3\)t2 | ||
=12.0\(4\) | ||
=12.0\(4\)s | ||
=12.0\(4\)t | ||
=12.0\(5\) | ||
=12.0\(5\)t1 | ||
=12.0\(6\) | ||
=12.0\(7\)t | ||
=12.0\(8\) | ||
=12.0\(9\)s | ||
=12.0db | ||
=12.0s | ||
=12.0t |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0380 is classified as a denial of service vulnerability affecting Cisco IOS devices.
To mitigate CVE-2000-0380, it is recommended to upgrade the software to a non-vulnerable version of Cisco IOS.
CVE-2000-0380 affects Cisco IOS versions 11.1 through 12.1.
Yes, CVE-2000-0380 can be exploited remotely by sending a specially crafted URL containing a %% string.
Exploitation of CVE-2000-0380 may lead to a denial of service condition, causing the affected Cisco devices to become unresponsive.