CVE-2007-2688
Cisco IPS Sensor Software and IOS - HTTP Traffic Detection Evasion via Unicode Character Encoding
Title source: llmDescription
The Cisco Intrusion Prevention System (IPS) and IOS with Firewall/IPS Feature Set do not properly handle certain full-width and half-width Unicode character encodings, which might allow remote attackers to evade detection of HTTP traffic.
References (12)
Core 12
Core References
Third Party Advisory, VDB Entry vdb-entry
signature
x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5465
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://www.osvdb.org/35336
US Government Resource third-party-advisory
x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/739224
Third Party Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2007/1803
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1018053
Various Sources x_refsource_misc
http://www.gamasec.net/english/gs07-01.html
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/25285
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1018054
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/23980
Vendor Advisory vendor-advisory
x_refsource_cisco
http://www.cisco.com/en/US/products/products_security_response09186a008083f82e.html
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/34277
Third Party Advisory, VDB Entry mailing-list
x_refsource_bugtraq
http://www.securityfocus.com/archive/1/468633/100/0/threaded
Scores
EPSS
0.0300
EPSS Percentile
86.0%
Details
Status
published
Products (23)
cisco/ios
10.0
cisco/ios
11.1cc
cisco/ios
11.3
cisco/ios
12.0
cisco/ios
12.0s
cisco/ios
12.0st
cisco/ios
12.0t
cisco/ios
12.1
cisco/ios
12.1e
cisco/ios
12.1t
... and 13 more
Published
May 16, 2007
Tracked Since
Feb 18, 2026