CVE-2002-0013 describes multiple vulnerabilities in the SNMPv1 request handling of numerous SNMP implementations. Specifically, it allows remote attackers to achieve denial of service or gain privileges through crafted GetRequest, GetNextRequest, and SetRequest messages. This vulnerability is rated with a critical CVSS score of 10.0 (AV:N/AC:L/Au:N/C:C/I:C/A:C), indicating it is network-exploitable with low attack complexity, requiring no authentication, and leading to complete compromise of confidentiality, integrity, and availability. While there is no evidence of active exploitation or Metasploit/Nuclei modules, an ExploitDB entry exists for Cisco IOS, and the vulnerability has received no community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:snmp:snmp:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.