Search:     Advanced search
server monitoring

Cisco TFTP Server Long Filename DoS (CSCdy03429)

Article ID: 11056
Last updated: 27 Jan, 2009
Views: 442
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

Cisco TFTP Server Long Filename DoS (CSCdy03429)

This script is (C) 2002-2009 Tenable Network Security, Inc.

FamilyCISCO
Plugin ID11056
Bugtraq ID5328
CVE IDCVE-2002-0813

Description:


Trivial File Transfer Protocol (TFTP) is a protocol which allows for
easy transfer of files between network connected devices.

A vulnerability has been discovered in the processing of filenames within
a TFTP read request when Cisco IOS is configured to act as a TFTP server

This vulnerability is documented as Cisco Bug ID CSCdy03429

Solution :
http://www.cisco.com/warp/public/707/ios-tftp-long-filename-pub.shtml
Risk factor : High

*** As solely relied on the banner of the remote host
*** this might be a false positive
This article was:   Helpful | Not Helpful
Prev   Next
Cisco Catalyst Enable Access Authentication Bypass (CSCea42030)     Cisco Multiple Devices Crafted IP Option Multiple Remote Code...