CVE-2011-0348

Cisco IOS 12.4(11)MD, 12.4(15)MD, 12.4(22)MD, 12.4(24)MD before 12.4(24)MD3, 12.4(22)MDA before 12.4(22)MDA5, and 12.4(24)MDA before 12.4(24)MDA3 on the Cisco Content Services Gateway Second Generation (aka CSG2) allows remote attackers to bypass intended access restrictions and intended billing restrictions by sending HTTP traffic to a restricted destination after sending HTTP traffic to an unrestricted destination, aka Bug ID CSCtk35917.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:cisco:ios:12.4\(11\)md:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(15\)md:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(22\)md:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(22\)mda:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(24\)md:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(24\)md1:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4\(24\)mda:*:*:*:*:*:*:*
cpe:2.3:h:cisco:content_services_gateway_second_generation:*:*:*:*:*:*:*:*

History

21 Nov 2024, 01:23

Type Values Removed Values Added
References () http://osvdb.org/70720 - () http://osvdb.org/70720 -
References () http://secunia.com/advisories/43052 - Vendor Advisory () http://secunia.com/advisories/43052 - Vendor Advisory
References () http://securitytracker.com/id?1024992 - () http://securitytracker.com/id?1024992 -
References () http://www.cisco.com/en/US/products/products_security_advisory09186a0080b6791d.shtml - Vendor Advisory () http://www.cisco.com/en/US/products/products_security_advisory09186a0080b6791d.shtml - Vendor Advisory
References () http://www.securityfocus.com/bid/46022 - () http://www.securityfocus.com/bid/46022 -
References () http://www.vupen.com/english/advisories/2011/0229 - () http://www.vupen.com/english/advisories/2011/0229 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/64936 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/64936 -

Information

Published : 2011-01-28 22:00

Updated : 2024-11-21 01:23


NVD link : CVE-2011-0348

Mitre link : CVE-2011-0348

CVE.ORG link : CVE-2011-0348


JSON object : View

Products Affected

cisco

  • content_services_gateway_second_generation
  • ios
CWE
CWE-264

Permissions, Privileges, and Access Controls