CVE-2002-1706

high

Description

Cisco IOS software 11.3 through 12.2 running on Cisco uBR7200 and uBR7100 series Universal Broadband Routers allows remote attackers to modify Data Over Cable Service Interface Specification (DOCSIS) settings via a DOCSIS file without a Message Integrity Check (MIC) signature, which is approved by the router.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/9368

http://www.cisco.com/warp/public/707/cmts-MD5-bypass-pub.shtml

Details

Source: Mitre, NVD

Published: 2002-12-31

Updated: 2024-02-08

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Severity: High