VULNERABILITY INTELLIGENCE
CVE-2002-1706
CVSS score7.5 HIGH
EPSS probability1.18%
CISA KEVNot currently listed
Published2002-12-31
Last modified2026-06-16
CVSS vectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Description
Cisco IOS software 11.3 through 12.2 running on Cisco uBR7200 and uBR7100 series Universal Broadband Routers allows remote attackers to modify Data Over Cable Service Interface Specification (DOCSIS) settings via a DOCSIS file without a Message Integrity Check (MIC) signature, which is approved by the router.
Weakness classification
- CWE-347: Improper Verification of Cryptographic Signature
Primary references
- cve@mitre.org — Not Applicable, Patch, Vendor Advisory
- cve@mitre.org — Broken Link, Patch, Third Party Advisory, VDB Entry
- cve@mitre.org — Third Party Advisory, VDB Entry
- af854a3a-2127-422b-91ae-364da2661108 — Not Applicable, Patch, Vendor Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Broken Link, Patch, Third Party Advisory, VDB Entry
- af854a3a-2127-422b-91ae-364da2661108 — Third Party Advisory, VDB Entry