CVE-2002-2379 describes a denial-of-service vulnerability in Cisco AS5350 devices running IOS 12.2(11)T, particularly when access control lists (ACLs) and SSH are enabled. A remote attacker can trigger a device crash by performing a port scan, potentially due to an SSH-related bug. This vulnerability has a high CVSS score of 7.8, indicating a critical impact with complete availability loss, and can be exploited remotely with low attack complexity and no authentication. While the vendor could not reproduce the issue, an ExploitDB entry exists, though there is no evidence of active exploitation, Metasploit modules, or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
12.2\(11t\)CPE matchmatch criteria | cpe:2.3:h:cisco:as5350:12.2\(11t\):*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.