CVE-2002-0886
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 5.4%
from disclosure to weapon0 days
Published on NVDAug 31
1st PoCMay 23
exploitation probability
5.4%top 8% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Cisco DSL CPE devices running CBOS 2.4.4 and earlier allows remote attackers to cause a denial of service (hang or memory consumption) via (1) a large packet to the DHCP port, (2) a large packet to the Telnet port, or (3) a flood of large packets to the CPE, which causes the TCP/IP stack to consume large amounts of memory.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/21472⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
https://exchange.xforce.ibmcloud.com/vulnerabilities/9152http://www.cisco.com/warp/public/707/CBOS-DoS.shtmlhttp://www.iss.net/security_center/static/9151.phphttp://www.iss.net/security_center/static/9153.phphttp://www.securityfocus.com/bid/4813http://www.securityfocus.com/bid/4814http://www.securityfocus.com/bid/4815