CVE-2002-2316
Last modified
CVE-2002-2316 is a vulnerability of currently unknown severity. Cisco Catalyst 4000 series switches running CatOS 5.5.5, 6.3.5, and 7.1.2 do not always learn MAC addresses from a single initial packet, which causes unicast traffic to be broadcast across the switch and allows remote attackers to obtain sensitive network information by sniffing.. EPSS estimates a 1.23% chance of exploitation in the next 30 days.
Description
Cisco Catalyst 4000 series switches running CatOS 5.5.5, 6.3.5, and 7.1.2 do not always learn MAC addresses from a single initial packet, which causes unicast traffic to be broadcast across the switch and allows remote attackers to obtain sensitive network information by sniffing.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Catos | 5.5\(5\) |
| Cisco | Catos | 6.3\(5\) |
| Cisco | Catos | 7.1\(2\) |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-2316?
How severe is CVE-2002-2316?
How do I fix CVE-2002-2316?
Are you affected by CVE-2002-2316?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
