Vulnerability Name: | CVE-1999-1129 (CCN-3294) | ||||||||
Assigned: | 1999-09-01 | ||||||||
Published: | 1999-09-01 | ||||||||
Updated: | 2017-12-19 | ||||||||
Summary: | Cisco Catalyst 2900 Virtual LAN (VLAN) switches allow remote attackers to inject 802.1q frames into another VLAN by forging the VLAN identifier in the trunking tag. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Bypass Security | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Wed, 1 Sep 1999 16:44:36 +0800 VLAN Security Source: CCN Type: BugTraq Mailing List, Mon Dec 19 2005 - 11:27:33 CST Making unidirectional VLAN and PVLAN jumping bidirectional Source: CCN Type: BugTraq Mailing List, Mon Dec 19 2005 - 16:26:16 CST Re: Making unidirectional VLAN and PVLAN jumping bidirectional Source: MITRE Type: CNA CVE-1999-1129 Source: MITRE Type: CNA CVE-2005-4440 Source: MITRE Type: CNA CVE-2005-4441 Source: CCN Type: IEEE Web site IEEE 802.1Q Virtual Bridged Local Area Networks Source: CCN Type: Cisco Security Notice: Document ID 68469 Cisco Security Notice: Response to Making Unidirectional VLAN and PVLAN Jumping Bidirectional Source: CCN Type: Cisco Systems Documentation Configuration Examples Related to VLAN Features Source: MISC Type: Vendor Advisory http://www.cisco.com/univercd/cc/td/doc/product/lan/28201900/1928v8x/eescg8x/aleakyv.htm Source: CCN Type: Cisco Systems Technical Tips Cisco Product Security Incident Response Source: CCN Type: OSVDB ID: 22192 Multiple Vendor 802.1q P/VLAN Unidirection Bypass Source: CCN Type: OSVDB ID: 8792 Cisco Catalyst VLAN 802.1q Frame Injection Source: BUGTRAQ Type: Patch, Vendor Advisory 19990901 VLAN Security Source: BID Type: Patch, Vendor Advisory 615 Source: CCN Type: BID-615 IEEE 802.1q Unauthorized VLAN Traversal Weakness Source: XF Type: UNKNOWN cisco-catalyst-vlan-frames(3294) Source: XF Type: UNKNOWN cisco-catalyst-vlan-frames(3294) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: ![]() | ||||||||
BACK |