Lucene search

K
ciscoCiscoCISCO-SA-20131224-CVE-2013-6979
HistoryDec 24, 2013 - 7:13 p.m.

Cisco IOS XE Software Telnet Authentication Bypass Vulnerability

2013-12-2419:13:51
tools.cisco.com
24

CVSS2

5.4

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:H/Au:N/C:C/I:N/A:N

EPSS

0.003

Percentile

66.1%

A vulnerability in the vty authentication of Cisco IOS XE Software (03.02.xxSE and 03.03.xxSE only) could allow an unauthenticated, remote attacker to access an affected device without authentication and perform actions on the device with the privileges configured for the vty line interface.

The vulnerability is due to incomplete validations of the Linux-IOS Internal Network interface. An unauthenticated, remote attacker could exploit this vulnerability only if their source address is in the 192.168.x.2 subnet and the attacker has IP communication to the Cisco IOS XE device. An exploit could allow the attacker to access the device with the privilege level of the vty line interface.

Cisco has confirmed the vulnerability in a security notice and released software updates.

To exploit this vulnerability, it is likely that an attacker would need access to trusted, internal networks in order to communicate with the targeted device. This access requirement limits the likelihood of a successful exploit.

Cisco indicates through the CVSS score that functional exploit code exists; however, the code is not known to be publicly available.

Affected configurations

Vulners
Node
ciscocisco_iosMatch3.2sexe
OR
ciscocisco_iosMatch3.3sexe
OR
ciscocisco_iosMatch3.2.0sexe
OR
ciscocisco_iosMatch3.2.1sexe
OR
ciscocisco_iosMatch3.2.2sexe
OR
ciscocisco_iosMatch3.2.3sexe
OR
ciscocisco_iosMatch3.3.0sexe
OR
ciscocisco_iosMatch3.3.1sexe
VendorProductVersionCPE
ciscocisco_ios3.2secpe:2.3:o:cisco:cisco_ios:3.2se:xe:*:*:*:*:*:*
ciscocisco_ios3.3secpe:2.3:o:cisco:cisco_ios:3.3se:xe:*:*:*:*:*:*
ciscocisco_ios3.2.0secpe:2.3:o:cisco:cisco_ios:3.2.0se:xe:*:*:*:*:*:*
ciscocisco_ios3.2.1secpe:2.3:o:cisco:cisco_ios:3.2.1se:xe:*:*:*:*:*:*
ciscocisco_ios3.2.2secpe:2.3:o:cisco:cisco_ios:3.2.2se:xe:*:*:*:*:*:*
ciscocisco_ios3.2.3secpe:2.3:o:cisco:cisco_ios:3.2.3se:xe:*:*:*:*:*:*
ciscocisco_ios3.3.0secpe:2.3:o:cisco:cisco_ios:3.3.0se:xe:*:*:*:*:*:*
ciscocisco_ios3.3.1secpe:2.3:o:cisco:cisco_ios:3.3.1se:xe:*:*:*:*:*:*

CVSS2

5.4

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:H/Au:N/C:C/I:N/A:N

EPSS

0.003

Percentile

66.1%

Related for CISCO-SA-20131224-CVE-2013-6979