CVE-2002-1706: High severity Cisco IOS vulnerability
Cisco IOS software 11.3 through 12.2 running on Cisco uBR7200 and uBR7100 series Universal Broadband Routers allows remote attackers to modify Data Over Cable Service Interface Specification (DOCSIS) settings via a DOCSIS file without a Message Integrity Check (MIC) signature, which is approved by the router.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1706?
The severity of CVE-2002-1706 is classified as high due to the potential for remote attacks to modify critical DOCSIS settings.
How do I fix CVE-2002-1706?
To fix CVE-2002-1706, update the Cisco IOS software to a version that addresses the vulnerability and eliminates the lack of Message Integrity Check.
What versions of Cisco IOS are affected by CVE-2002-1706?
CVE-2002-1706 affects Cisco IOS versions 11.3 through 12.2, including several specific variants such as 11.3xa and 12.2t.
What devices are impacted by CVE-2002-1706?
CVE-2002-1706 impacts Cisco uBR7200 and uBR7100 series Universal Broadband Routers.
Can CVE-2002-1706 be exploited remotely?
Yes, CVE-2002-1706 can be exploited remotely by attackers without any authentication, allowing unauthorized modification of DOCSIS settings.