CVE-2001-0864 describes a vulnerability in Cisco 12000 routers running IOS 12.0 with Engine 2 line cards. Specifically, it involves a flaw in how the router handles an implicit "deny ip any any" rule within an outgoing Access Control List (ACL) when that ACL contains exactly 448 entries, potentially allowing some packets to bypass intended access restrictions. This vulnerability carries a CVSS score of 7.5 (HIGH), indicating a significant risk. It is remotely exploitable with low attack complexity, and successful exploitation could lead to partial compromise of confidentiality, integrity, and availability. There is no evidence of active exploitation, and no public exploit code is available on platforms like Metasploit, Nuclei, or ExploitDB. Furthermore, there is no recorded community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:cisco:12000_router:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.