First published: Thu Oct 18 2001(Updated: )
Cisco switches and routers running CBOS 2.3.8 and earlier use predictable TCP Initial Sequence Numbers (ISN), which allows remote attackers to spoof or hijack TCP connections.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco CBOS | <=2.3.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0751 has a high severity rating due to the potential for remote attackers to hijack TCP connections.
To fix CVE-2001-0751, upgrade to a version of Cisco CBOS later than 2.3.8 that does not use predictable TCP Initial Sequence Numbers.
CVE-2001-0751 affects Cisco switches and routers that are running Cisco CBOS 2.3.8 and earlier.
Due to CVE-2001-0751, attackers can spoof or hijack established TCP connections.
Yes, CVE-2001-0751 remains relevant for systems still running vulnerable versions of Cisco CBOS.