CVE-2000-0984: Medium severity Cisco IOS vulnerability
Published Dec 19, 2000
·Updated
The HTTP server in Cisco IOS 12.0 through 12.1 allows local users to cause a denial of service (crash and reload) via a URL containing a "?/" string.
Affected Software
24 affected components
Cisco IOS=12.1xg
Cisco IOS=12.1xi
Cisco IOS=12.1xc
Cisco IOS=12.1xp
Cisco IOS=12.0xe
Cisco IOS=12.0xj
Cisco IOS=12.1t
Cisco IOS=12.1db
Cisco IOS=12.1xe
Cisco IOS=12.1xb
Cisco IOS=12.1xl
Cisco IOS=12.0xh
Cisco IOS=12.0t
Cisco IOS=12.1dc
Cisco IOS=12.1ec
Cisco IOS=12.0w5
Cisco IOS=12.1xh
Cisco IOS=12.0xa
Cisco IOS=12.1xj
Cisco IOS=12.1aa
Cisco IOS=12.1xd
Cisco IOS=12.1xf
Cisco IOS=12.1da
Cisco IOS=12.1xa
Remediation
Patch Available
Event History
Dec 19, 2000
CVE Published
05:00 AM
Jan 22, 2001
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0984?
CVE-2000-0984 is classified as a denial of service vulnerability.
2
How do I fix CVE-2000-0984?
To fix CVE-2000-0984, upgrade to a version of Cisco IOS that is not affected by this vulnerability.
3
What systems are affected by CVE-2000-0984?
CVE-2000-0984 affects various versions of Cisco IOS 12.0 through 12.1.
4
What type of vulnerability is CVE-2000-0984?
CVE-2000-0984 is a denial of service vulnerability that causes the HTTP server to crash.
5
Can local users exploit CVE-2000-0984?
Yes, local users can exploit CVE-2000-0984 by sending a specially crafted URL containing a "?/" string.