CVE-2003-0100
UnknownEPSS 9.63%
Last modified
CVE-2003-0100 is a vulnerability of currently unknown severity. Buffer overflow in Cisco IOS 11.2.x to 12.0.x allows remote attackers to cause a denial of service and possibly execute commands via a large number of OSPF neighbor announcements.. EPSS estimates a 9.63% chance of exploitation in the next 30 days.
Description
Buffer overflow in Cisco IOS 11.2.x to 12.0.x allows remote attackers to cause a denial of service and possibly execute commands via a large number of OSPF neighbor announcements.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | 11.1 |
| Cisco | Ios | 11.1\(7\)aa |
| Cisco | Ios | 11.1\(7\)ca |
| Cisco | Ios | 11.1\(9\)ia |
| Cisco | Ios | 11.1\(13\) |
| Cisco | Ios | 11.1\(13\)aa |
| Cisco | Ios | 11.1\(13\)ca |
| Cisco | Ios | 11.1\(13\)ia |
| Cisco | Ios | 11.1\(15\)aa |
| Cisco | Ios | 11.1\(15\)ca |
| Cisco | Ios | 11.1\(15\)ia |
| Cisco | Ios | 11.1\(16\)aa |
| Cisco | Ios | 11.1\(16\)ia |
| Cisco | Ios | 11.1\(17\)cc |
| Cisco | Ios | 11.1\(17\)ct |
| Cisco | Ios | 11.1\(20\)aa4 |
| Cisco | Ios | 11.1\(24a\) |
| Cisco | Ios | 11.1\(24b\) |
| Cisco | Ios | 11.1\(28a\)ct |
| Cisco | Ios | 11.1\(28a\)ia |
| Cisco | Ios | 11.1\(36\)ca2 |
| Cisco | Ios | 11.1\(36\)cc2 |
| Cisco | Ios | 11.1\(36\)cc4 |
| Cisco | Ios | 11.1aa |
| Cisco | Ios | 11.1ca |
| Cisco | Ios | 11.1cc |
| Cisco | Ios | 11.1ct |
| Cisco | Ios | 11.1ia |
| Cisco | Ios | 11.2 |
| Cisco | Ios | 11.2\(4\) |
| Cisco | Ios | 11.2\(4\)f |
| Cisco | Ios | 11.2\(4\)f1 |
| Cisco | Ios | 11.2\(4\)xa |
| Cisco | Ios | 11.2\(4\)xaf |
| Cisco | Ios | 11.2\(8\)p |
| Cisco | Ios | 11.2\(8\)sa1 |
| Cisco | Ios | 11.2\(8\)sa3 |
| Cisco | Ios | 11.2\(8\)sa5 |
| Cisco | Ios | 11.2\(8.9\)sa6 |
| Cisco | Ios | 11.2\(9\)p |
| Cisco | Ios | 11.2\(9\)xa |
| Cisco | Ios | 11.2\(10\)bc |
| Cisco | Ios | 11.2\(11b\)t2 |
| Cisco | Ios | 11.2\(17\) |
| Cisco | Ios | 11.2\(19\)gs0.2 |
| Cisco | Ios | 11.2\(19a\)gs6 |
| Cisco | Ios | 11.2\(23a\)bc1 |
| Cisco | Ios | 11.2\(26\)p2 |
| Cisco | Ios | 11.2\(26a\) |
| Cisco | Ios | 11.2\(26b\) |
Showing 50 of 221 affected configurations. See NVD for the full list.
References
- http://www.iss.net/security_center/static/11373.phpVendor Advisory
- http://www.iss.net/security_center/static/11373.phpVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2003-0100?
Buffer overflow in Cisco IOS 11.2.x to 12.0.x allows remote attackers to cause a denial of service and possibly execute commands via a large number of OSPF neighbor announcements.
How severe is CVE-2003-0100?
Severity scoring for CVE-2003-0100 is pending analysis. The EPSS model estimates a 9.63% probability of exploitation in the next 30 days.
How do I fix CVE-2003-0100?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2003
- CVE-2003-0094A patch for mcookie in the util-linux package for Mandrake L…
- CVE-2003-0095Buffer overflow in ORACLE.EXE for Oracle Database Server 9i,…
- CVE-2003-0096Multiple buffer overflows in Oracle 9i Database release 2, R…
- CVE-2003-0097Unknown vulnerability in CGI module for PHP 4.3.0 allows att…
- CVE-2003-0098Unknown vulnerability in apcupsd before 3.8.6, and 3.10.x be…
- CVE-2003-0099Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.…
- CVE-2003-0101miniserv.pl in (1) Webmin before 1.070 and (2) Usermin befor…
- CVE-2003-0102Buffer overflow in tryelf() in readelf.c of the file command…
- CVE-2003-0103Format string vulnerability in Nokia 6210 handset allows rem…
- CVE-2003-0104Directory traversal vulnerability in PeopleTools 8.10 throug…
- CVE-2003-0105ServerMask 2.2 and earlier does not obfuscate (1) ETag, (2) …
- CVE-2003-0106The HTTP proxy for Symantec Enterprise Firewall (SEF) 7.0 al…
Are you affected by CVE-2003-0100?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
