s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

CVE-1999-1306 high

📛 Threat Title

CVE-1999-1306

Category: vulnerability Published: Source updated: First seen: Last updated: Source: NVD Recent CVEs

Description

Cisco IOS 9.1 and earlier does not properly handle extended IP access lists when the IP route cache is enabled and the "established" keyword is set, which could allow attackers to bypass filters.

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (2)

  • cve@mitre.org NVD Recent CVEs
  • NVD detail: CVE-1999-1306 NVD Recent CVEs

    Cisco IOS 9.1 and earlier does not properly handle extended IP access lists when the IP route cache is enabled and the "established" keyword is set, which could allow attackers to bypass filters.

Remediations (10)

  • web:app.opencve.io

    Explore the latest vulnerabilities and security issues in the CVE database

  • web:cvevault.com

    CVE Vault - Search and explore Common Vulnerabilities and Exposures ( CVE ) database. Find security vulnerabilities by CVE ID, vendor, severity, and year. Stay secure with comprehensive CVE information.

  • web:cwe.mitre.org

    Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.

  • web:federalnewsnetwork.com

    AI drives new debate around CISA software patching deadlines CISA this year has already started accelerating the deadlines for agencies to patch software bugs posted to the Known Exploited Vulnerabilities (KEV) catalog.

  • web:translate.google.com

    Google's service, offered free of charge, instantly translates words, phrases, and web pages between English and over 100 other languages.

  • web:www.cisa.gov

    Identify affected repositories. Conduct an audit to locate all projects using all versions of tj-actions/changed-files between 2025-03-12 00:00 UTC to 2025-03-15 12:00 UTC in your organization and/ or the reviewdog/action between March 11, 2025, between 18:42 and 20:31 UTC.

  • web:www.cve.org

    At cve .org, we provide the authoritative reference method for publicly known information-security vulnerabilities and exposures

  • web:www.cvefind.com

    CVE Find is a real-time vulnerability database indexing 351 731 security flaws ( CVE ) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1311 new CVEs were published in the last 7 days. Data aggregated from: MITRE Corporation ( CVE , CWE, CAPEC), National Vulnerability Database - NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).

  • web:www.nist.gov

    NIST maintains the National Vulnerability Database (NVD), a repository of information on software and hardware flaws that can compromise computer security. This is a key piece of the nation's cybersecurity infrastructure.

  • web:www.virustotal.com

    VirusTotal is a platform for scanning files and URLs for viruses, malware, and other threats using multiple antivirus engines.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.