CVE-2004-0674: Medium severity Enterasys Xsr-1805 vulnerability
Enterasys XSR-1800 series Security Routers, when running firmware 7.0.0.0 and using Policy-Based Routing, allow remote attackers to cause a denial of service (crash) via a packet with the IP record route option set.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0674?
CVE-2004-0674 is classified as a denial of service vulnerability that can cause crashes to affected routers.
Which devices are affected by CVE-2004-0674?
CVE-2004-0674 affects Enterasys XSR-1800 series routers running firmware 7.0.0.0 and possibly the XSR-3000 series.
How do I fix CVE-2004-0674?
To mitigate CVE-2004-0674, it is recommended to upgrade the firmware of the affected Enterasys routers to a secure version.
What type of attack does CVE-2004-0674 enable?
CVE-2004-0674 enables remote attackers to trigger a denial of service attack through specially crafted packets.
Is CVE-2004-0674 still relevant today?
Though CVE-2004-0674 was identified in 2004, devices still using the affected firmware versions remain vulnerable if not updated.