CVE-1999-1306

CVSS 2.0 Score 7.5 of 10 (high)

Details

Published Dec 10, 1992
Updated: Nov 20, 2024

Summary

CVE-1999-1306 is a vulnerability affecting Cisco IOS 9.1 and earlier versions. This issue arises when the IP route cache is enabled and extended IP access lists are used with the "established" keyword. The vulnerability allows attackers to bypass filters, potentially compromising network security. The Cisco IOS software fails to handle these access lists properly, creating an opportunity for unauthorized traffic to pass through. To mitigate this risk, it's recommended to update the affected Cisco IOS software to a version that addresses this issue, or apply the relevant patches if available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Cisco IOS

Affected Vendors

  • Cisco Systems Inc