vendor:
Cisco IOS
by:
zerash@evicted.org
7.5
CVSS
HIGH
Remote Denial of Service (DoS)
CWE
Product Name: Cisco IOS
Affected Version From: All versions of Cisco IOS
Affected Version To: All versions of Cisco IOS
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2003
Cisco IOS Remote DoS Exploit
This script is a remote DoS exploit against a vulnerability in Cisco IOS. It works by using hping to send a large number of packets to the target device, causing it to become unresponsive. The script requires tcsh and hping to be installed. It also requires root privileges or the script to be setuid root due to hping's use of raw sockets. The example provided demonstrates how the script can be used to target a specific IP address and TTL value.
Mitigation:
Upgrade to a patched version of Cisco IOS. Restrict network access to the affected device.