CVE-2005-1020
Severity CVSS v4.0:
Pending analysis
Type:
CWE-287
Authentication Issues
Publication date:
02/05/2005
Last modified:
03/04/2025
Description
Secure Shell (SSH) 2 in Cisco IOS 12.0 through 12.3 allows remote attackers to cause a denial of service (device reload) (1) via a username that contains a domain name when using a TACACS+ server to authenticate, (2) when a new SSH session is in the login phase and a currently logged in user issues a send command, or (3) when IOS is logging messages and an SSH session is terminated while the server is sending data.
Impact
Base Score 2.0
7.10
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:cisco:ios:12.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0\(23\)s4:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0\(23\)s5:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0\(24\)s1:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0\(24\)s4:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0\(24\)s5:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0\(24.2\)s:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0\(26\)s1:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0\(27\)s:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0\(27\)sv:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0\(27\)sv1:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0da:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0db:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0dc:*:*:*:*:*:*:* | ||
cpe:2.3:o:cisco:ios:12.0s:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/14854
- http://www.cisco.com/warp/public/707/cisco-sa-20050406-ssh.shtml
- http://www.securityfocus.com/bid/13043
- http://www.securitytracker.com/alerts/2005/Apr/1013655.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19987
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19989
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19990
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5455
- http://secunia.com/advisories/14854
- http://www.cisco.com/warp/public/707/cisco-sa-20050406-ssh.shtml
- http://www.securityfocus.com/bid/13043
- http://www.securitytracker.com/alerts/2005/Apr/1013655.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19987
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19989
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19990
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5455