VDB
CVE-2007-2813
CVE-2007-2813
PUBLISHED
CVSS 7.800000190734863 HIGH
Cisco IOS 12.4 and earlier, when using the crypto packages and SSL support is enabled, allows remote attackers to cause a denial of service via a malformed (1) ClientHello, (2) ChangeCipherSpec, or (3) Finished message during an SSL session.
EPSS 2.70% · 86.2th percentile
Risk Scores
CVSS 2.0
7.800000190734863
EPSS Score
2.70%
86.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | * |
| cisco | ios_transmission_control_protocol | 12.0t, 12.0xe, 12.0xh |
Exploit Intelligence
- cisco-ios-finished-dos(34442) (circl)
- 1018094 (circl)
- cisco-ios-changecipherspec-dos(34436) (circl)
- ADV-2007-1910 (circl)
- 25361 (circl)
- oval:org.mitre.oval:def:5745 (circl)
- 24097 (circl)
- cisco-ios-clienthello-dos(34432) (circl)
- 35339 (circl)
- 20070522 Multiple Vulnerabilities in Cisco IOS While Processing SSL Packets (circl)
Timeline
- May 22, 2007 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- cisco-ios-finished-dos(34442) vdb
- 1018094 vdb
- cisco-ios-changecipherspec-dos(34436) vdb
- ADV-2007-1910 vdb
- 25361 third-party-advisory
- oval:org.mitre.oval:def:5745 vdb
- 24097 vdb
- cisco-ios-clienthello-dos(34432) vdb
- 35339 vdb
- 20070522 Multiple Vulnerabilities in Cisco IOS While Processing SSL Packets vendor-advisory
- http://www.cisco.com/warp/public/707/cisco-sa-20070522-crypto.shtml advisory
- http://www.cisco.com/warp/public/707/cisco-s%20a-20070523-ccm.shtml advisory
- http://www.cisco.com/warp/public/707/cisco-sa-20070522-SSL.shtml advisory
- https://nvd.nist.gov/vuln/detail/CVE-2007-2813 advisory