Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A "logic error" in Cisco IOS 12.0 through 12.4, when a Multiprotocol Label Switching (MPLS) VPN with extended communities is configured, sometimes causes a corrupted route target (RT) to be used, which allows remote attackers to read traffic from other VPNs in opportunistic circumstances.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco IOS 输入验证错误漏洞
Vulnerability Description
Cisco IOS是美国思科(Cisco)公司的一套为其网络设备开发的操作系统。 Cisco IOS 存在输入验证错误漏洞,该漏洞源于运行Cisco IOS的设备如果配置了MPLS VPN或VRF Lite的话,在CE与PE设备之间使用BGP可能允许在VPN之间广播信息。如果使用了扩展团体,MPLS VPN可能错误的使用被破坏的路由目标(RT)转发通讯。在这种情况下,通讯可能从一个MPLS VPN泄露给另一个。 只要受影响的PE设备在MPLS VPN VRF中运行了BGP会话就会出现这个漏洞,但攻击者无法
CVSS Information
N/A
Vulnerability Type
N/A