CVE-2007-4293: High severity Cisco IOS vulnerability
Published Aug 9, 2007
·Updated
Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (device crash) via (1) "abnormal" MGCP messages, aka CSCsd81407; and (2) a large facsimile packet, aka CSCej20505.
Affected Software
5 affected components
Cisco IOS=12.3
Cisco IOS=12.1
Cisco IOS=12.4
Cisco IOS=12.2
Cisco IOS=12.0
Event History
Aug 9, 2007
CVE Published
09:17 PM
Aug 10, 2007
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4293?
CVE-2007-4293 is classified as a high severity vulnerability due to its potential to cause denial of service.
2
What versions of Cisco IOS are affected by CVE-2007-4293?
CVE-2007-4293 affects Cisco IOS versions 12.0 through 12.4, including versions 12.1, 12.2, and 12.3.
3
How do I fix CVE-2007-4293?
To mitigate CVE-2007-4293, it is recommended to upgrade to a fixed version of Cisco IOS that addresses the vulnerability.
4
What types of attacks can exploit CVE-2007-4293?
CVE-2007-4293 can be exploited through abnormal MGCP messages and large facsimile packets.
5
What impact does CVE-2007-4293 have on my network?
Exploiting CVE-2007-4293 can lead to crashes of affected devices, resulting in a denial of service for network users.