CVE-1999-1306

Cisco IOS < 9.1 - IP Access List Bypass via Established Keyword

Title source: llm
STIX 2.1

Description

Cisco IOS 9.1 and earlier does not properly handle extended IP access lists when the IP route cache is enabled and the "established" keyword is set, which could allow attackers to bypass filters.

References (1)

Core 1
Core References
Patch, Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert
http://www.cert.org/advisories/CA-1992-20.html

Scores

EPSS 0.0139
EPSS Percentile 69.5%

Details

Status published
Products (1)
cisco/ios < 9.1
Published Dec 10, 1992
Tracked Since Feb 18, 2026