CVE-2006-4911: High severity cisco ips sensor software vulnerability
Published Sep 21, 2006
·Updated
Unspecified vulnerability in Cisco IPS 5.0 before 5.0(6p2) and 5.1 before 5.1(2), when running in inline or promiscuous mode, allows remote attackers to bypass traffic inspection via a "crafted sequence of fragmented IP packets".
Affected Software
2 affected components
Cisco Ips Sensor Software>=5.0<5.0\(6p2\)
Cisco Ips Sensor Software>=5.1<5.1\(2\)
Event History
Sep 21, 2006
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-4911?
CVE-2006-4911 has a critical severity rating as it allows remote attackers to bypass security controls.
2
How do I fix CVE-2006-4911?
To fix CVE-2006-4911, upgrade the Cisco IPS to version 5.0(6p2) or 5.1(2) or later.
3
What systems are affected by CVE-2006-4911?
CVE-2006-4911 affects Cisco IPS Sensor Software versions before 5.0(6p2) and 5.1(2).
4
What type of attack does CVE-2006-4911 enable?
CVE-2006-4911 enables remote attackers to bypass traffic inspection through crafted fragmented IP packets.
5
In what modes does CVE-2006-4911 occur?
CVE-2006-4911 occurs when Cisco IPS is running in inline or promiscuous mode.