Cisco IOS 12.4(11)MD, 12.4(15)MD, 12.4(22)MD, 12.4(24)MD before 12.4(24)MD3, 12.4(22)MDA before 12.4(22)MDA5, and 12.4(24)MDA before 12.4(24)MDA3 on the Cisco Content Services Gateway Second Generation (aka CSG2) allows remote attackers to bypass intended access restrictions and intended billing restrictions by sending HTTP traffic to a restricted destination after sending HTTP traffic to an unrestricted destination, aka Bug ID CSCtk35917.
References
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 01:23
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/70720 - | |
References | () http://secunia.com/advisories/43052 - Vendor Advisory | |
References | () http://securitytracker.com/id?1024992 - | |
References | () http://www.cisco.com/en/US/products/products_security_advisory09186a0080b6791d.shtml - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/46022 - | |
References | () http://www.vupen.com/english/advisories/2011/0229 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/64936 - |
Information
Published : 2011-01-28 22:00
Updated : 2024-11-21 01:23
NVD link : CVE-2011-0348
Mitre link : CVE-2011-0348
CVE.ORG link : CVE-2011-0348
JSON object : View
Products Affected
cisco
- content_services_gateway_second_generation
- ios
CWE
CWE-264
Permissions, Privileges, and Access Controls