Denial of Service Vulnerability in Cisco DSL CPE Devices
CVE-2002-0886

Currently unrated

Key Information:

Vendor

Cisco

Status
Vendor
CVE Published:
4 October 2002

What is CVE-2002-0886?

Cisco DSL CPE devices operating with CBOS version 2.4.4 and prior are susceptible to a denial of service vulnerability. By sending a large packet to either the DHCP or Telnet ports, or by flooding the device with large packets, attackers can exploit the TCP/IP stack. This exploitation leads to excessive memory consumption, potentially resulting in the device becoming unresponsive. Organizations using these devices should consider applying the recommended patches and implementing preventive security measures.

References

EPSS Score

22% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.