← Vulnerability feed

Vulnerability record · CVE-2003-1132 · published 31 December 2003

CVE-2003-1132: Cisco content services switch 11000 vulnerability

Cisco · Content Services Switch 11000

The DNS server for Cisco Content Service Switch (CSS) 11000 and 11500, when prompted for a nonexistent AAAA record, responds with response code 3 (NXDOMAIN or "Name Error") instead of response code 0 ("No Error"), which allows remote attackers to cause a denial of service (inaccessible domain) by forcing other DNS servers to send and cache a request for a AAAA record to the vulnerable server.

5.0 CVSS 2.0 Medium EPSS 2.1% · top 18.8%
5.0CVSS 2.0 base score
2.1%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
4References
16 Jun 2026Last modified by NVD

Description

The DNS server for Cisco Content Service Switch (CSS) 11000 and 11500, when prompted for a nonexistent AAAA record, responds with response code 3 (NXDOMAIN or "Name Error") instead of response code 0 ("No Error"), which allows remote attackers to cause a denial of service (inaccessible domain) by forcing other DNS servers to send and cache a request for a AAAA record to the vulnerable server.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2003-1132 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.5CVE-2010-2629Cisco content services switch 11500 improper input validation vulnerabilityThe Cisco Content Services Switch (CSS) 11500 with software 8.20.4.02 and the Application Control Engine (ACE) 4710 with software A2(3.0) do not prop…EPSS 1.5%7.5CVE-2010-1575Cisco content services switch 11500 permissions and access controls vulnerabilityThe Cisco Content Services Switch (CSS) 11500 with software 08.20.1.01 conveys authentication data through ClientCert-* headers but does not delete c…EPSS 1.7%7.5CVE-2010-1576Cisco content services switch 11500 improper input validation vulnerabilityThe Cisco Content Services Switch (CSS) 11500 with software before 8.20.4.02 and the Application Control Engine (ACE) 4710 with software before A2(3.…EPSS 1.8%7.5CVE-2004-0079Cisco firewall services module null pointer dereference vulnerabilityThe do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) vi…EPSS 9.5%7.5CVE-2002-0870Cisco webns vulnerabilityThe original patch for the Cisco Content Service Switch 11000 Series authentication bypass vulnerability (CVE-2001-0622) was incomplete, which still …EPSS 1.5%7.5CVE-2001-0621Cisco content services switch 11000 vulnerabilityThe FTP server on Cisco Content Service 11000 series switches (CSS) before WebNS 4.01B23s and WebNS 4.10B13s allows an attacker who is an FTP user to…EPSS 1.4%7.5CVE-2001-0622Cisco content services switch 11000 vulnerabilityThe web management service on Cisco Content Service series 11000 switches (CSS) before WebNS 4.01B29s or WebNS 4.10B17s allows a remote attacker to g…EPSS 1.6%5.0CVE-2006-4352Cisco content services switch 11000 vulnerabilityThe ArrowPoint cookie functionality for Cisco 11000 series Content Service Switches specifies an internal IP address if the administrator does not sp…EPSS 1.3%

Source: NIST National Vulnerability Database (record CVE-2003-1132), CISA KEV, FIRST EPSS (scores of 2026-10-06). This page is refreshed as NVD updates the record.