CVE-2001-0867: Cisco 12000 Router
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not properly filter does not properly filter packet fragments even when the "fragment" keyword is used in an ACL, which allows remote attackers to bypass the intended access controls.
Affected products
- Cisco 12000 Router: any version
Published 2001-12-06. Last modified 2026-06-16.