Catos
Vendor:
First CVE: Apr 20, 2000 · Active for 26 years
18
Total CVEs
More Total CVEs than 93% of tracked products
2.0
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
6.4
Avg CVSS
Higher Avg CVSS than 28% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Catos over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 20, 2000
26 years ago
Most Recent CVE
Nov 6, 2008
6,469 days ago
CVE Severity & Scoring
Catos18 CVEs
50%
50%
All CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown18 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown18 (100.0%)
User Interaction
None0 (0.0%)
Unknown18 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown18 (100.0%)
Top CVEs
Signals from CVEs in this product scope (18 CVEs).
18 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-0960HIGH SNMPv3 HMAC verification in (1) Net-SNMP 5.2.x before 5.2.4.1, 5.3.x before 5.3.2.1, and 5.4.x before 5.4.1.1; (2) UCD-SNMP; (3) eCos; (4) Juniper Session and Resource Control (SRC | Jun 10, 2008 | 10.0 | 77 | NO | YES |
CVE-2001-0041HIGH Memory leak in Cisco Catalyst 4000, 5000, and 6000 series switches allows remote attackers to cause a denial of service via a series of failed telnet authentication attempts. | Feb 16, 2001 | 7.8 | 41 | NO | YES |
CVE-2002-1222HIGH Buffer overflow in the embedded HTTP server for Cisco Catalyst switches running CatOS 5.4 through 7.3 allows remote attackers to cause a denial of service (reset) via a long HTTP r | Oct 28, 2002 | 7.1 | 31 | NO | YES |
CVE-2003-0216HIGH Unknown vulnerability in Cisco Catalyst 7.5(1) allows local users to bypass authentication and gain access to the enable mode without a password. | May 12, 2003 | 9.3 | 28 | NO | NO |
CVE-2007-5651HIGH Unspecified vulnerability in the Extensible Authentication Protocol (EAP) implementation in Cisco IOS 12.3 and 12.4 on Cisco Access Points and 1310 Wireless Bridges (Wireless EAP d | Oct 23, 2007 | 7.1 | 21 | NO | NO |
CVE-2006-4775HIGH The VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(19) and CatOS allows remote attackers to cause a denial of service by sending a VTP update with a revision value of 0x7FF | Sep 14, 2006 | 7.8 | 21 | NO | NO |
CVE-2005-4258HIGH Unspecified Cisco Catalyst Switches allow remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with | Dec 15, 2005 | 7.8 | 20 | NO | NO |
CVE-2008-4963HIGH Unspecified vulnerability in the VLAN Trunking Protocol (VTP) implementation on Cisco IOS and CatOS, when the VTP operating mode is not transparent, allows remote attackers to caus | Nov 6, 2008 | 7.1 | 19 | NO | NO |
CVE-2002-2316MEDIUM Cisco Catalyst 4000 series switches running CatOS 5.5.5, 6.3.5, and 7.1.2 do not always learn MAC addresses from a single initial packet, which causes unicast traffic to be broadca | Dec 31, 2002 | 5.0 | 19 | NO | NO |
CVE-2002-1024HIGH Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC | Oct 4, 2002 | 7.1 | 19 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (18 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
16.7% of CVEs· 89th percentile
Social Chatter
Signals from CVEs in this product scope (18 CVEs).
Media Mentions
Signals from CVEs in this product scope (18 CVEs).
Top CNAs Publishing CVEs For Catos
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 8.5 | 1 | 7.1 | 1.8% | 0 | 0 |
| 8.4 | 1 | 7.1 | 1.8% | 0 | 0 |
| 8.3glx | 1 | 5.0 | 3.1% | 0 | 0 |
| 8.3\(1\)glx | 1 | 5.0 | 3.1% | 0 | 0 |
| 8.3 | 1 | 7.1 | 1.8% | 0 | 0 |
| 8.2\(1\) | 1 | 5.0 | 3.1% | 0 | 0 |
| 8.2 | 2 | 6.0 | 2.5% | 0 | 0 |
| 8.1\(3\) | 1 | 5.0 | 3.1% | 0 | 0 |
| 8.1\(2\) | 1 | 5.0 | 3.1% | 0 | 0 |
| 8.1 | 2 | 6.0 | 2.5% | 0 | 0 |
| 7.6\(5\) | 1 | 5.0 | 3.1% | 0 | 0 |
| 7.6\(4\) | 1 | 5.0 | 3.1% | 0 | 0 |
| 7.6\(3\) | 1 | 5.0 | 3.1% | 0 | 0 |
| 7.6\(2\) | 2 | 6.4 | 2.6% | 0 | 0 |
| 7.6\(1\) | 5 | 5.5 | 2.2% | 0 | 0 |
| 7.6 | 2 | 6.0 | 2.5% | 0 | 0 |
| 7.5\(1\) | 6 | 6.0 | 2.2% | 0 | 0 |
| 7.5 | 2 | 6.0 | 2.5% | 0 | 0 |
| 7.4\(3\) | 1 | 5.0 | 3.1% | 0 | 0 |
| 7.4\(2\) | 1 | 5.0 | 3.1% | 0 | 0 |