Vulnerability Description
The MPS functionality in Enterasys SSR8000 (Smart Switch Router) before firmware 8.3.0.10 allows remote attackers to cause a denial of service (crash) via multiple port scans to ports 15077 and 15078.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Enterasys | Smartswitch Ssr8000 | e8.2.0.0 |
References
- http://archives.neohapsis.com/archives/bugtraq/2002-09/0141.htmlExploitPatchVendor Advisory
- http://www.enterasys.com/support/techtips/tk0659-9.htmlVendor Advisory
- http://www.iss.net/security_center/static/10096.phpPatchVendor Advisory
- http://www.securityfocus.com/bid/5703ExploitPatchVendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2002-09/0141.htmlExploitPatchVendor Advisory
- http://www.enterasys.com/support/techtips/tk0659-9.htmlVendor Advisory
- http://www.iss.net/security_center/static/10096.phpPatchVendor Advisory
- http://www.securityfocus.com/bid/5703ExploitPatchVendor Advisory
FAQ
What is CVE-2002-1501?
CVE-2002-1501 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The MPS functionality in Enterasys SSR8000 (Smart Switch Router) before firmware 8.3.0.10 allows remote attackers to cause a denial of service (crash) via multiple port scans to ports 15077 and 15078.
How severe is CVE-2002-1501?
CVE-2002-1501 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2002-1501?
Check the references section above for vendor advisories and patch information. Affected products include: Enterasys Smartswitch Ssr8000.