CVE-2001-0669
Published Oct 30, 2001
Last updated 8 years ago
Overview
- Description
- Various Intrusion Detection Systems (IDS) including (1) Cisco Secure Intrusion Detection System, (2) Cisco Catalyst 6000 Intrusion Detection System Module, (3) Dragon Sensor 4.x, (4) Snort before 1.8.1, (5) ISS RealSecure Network Sensor 5.x and 6.x before XPU 3.2, and (6) ISS RealSecure Server Sensor 5.5 and 6.0 for Windows, allow remote attackers to evade detection of HTTP attacks via non-standard "%u" Unicode encoding of ASCII characters in the requested URL.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:cisco:catalyst_6000_intrusion_detection_system_module:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "670E75BE-D3CB-4BA7-BF17-F4CEFBA668D1" }, { "criteria": "cpe:2.3:a:cisco:secure_intrusion_detection_system:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "77012AED-148F-422C-AB0C-DBD7BB1D3493" }, { "criteria": "cpe:2.3:a:iss:realsecure_network_sensor:5.x:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D0D349D6-057D-459C-861B-FF9BE193A3D2" }, { "criteria": "cpe:2.3:a:iss:realsecure_network_sensor:6.x:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D1D78D55-2486-48C6-8766-D933328F585A" }, { "criteria": "cpe:2.3:a:iss:realsecure_server_sensor:5.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AC67A95B-3CCF-469F-98C2-8D8C7B2E0F91" }, { "criteria": "cpe:2.3:a:iss:realsecure_server_sensor:6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "42507EA0-009C-466B-A4AD-F7C050682F49" }, { "criteria": "cpe:2.3:a:snort:snort:1.8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12D3E0FE-0557-4B8F-A97B-1FBE6030C8CA" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:enterasys:dragon:4.x:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2CE293CA-7874-4B54-8516-AF3469A3440D" } ], "operator": "OR" } ] } ]