Lucene search

K
nvd[email protected]NVD:CVE-2015-0610
HistoryFeb 12, 2015 - 1:59 a.m.

CVE-2015-0610

2015-02-1201:59:26
CWE-362
web.nvd.nist.gov
7

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

6.7

Confidence

Low

EPSS

0.004

Percentile

74.3%

Race condition in the object-group ACL feature in Cisco IOS 15.5(2)T and earlier allows remote attackers to bypass intended access restrictions via crafted network traffic that triggers improper handling of the timing of process switching and Cisco Express Forwarding (CEF) switching, aka Bug ID CSCun21071.

Affected configurations

Nvd
Node
ciscoiosRange15.5\(2\)t
OR
ciscoiosMatch15.5\(1\)t
OR
ciscoiosMatch15.5\(1\)t1
OR
ciscoiosMatch15.5t
VendorProductVersionCPE
ciscoios*cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*
ciscoios15.5(1)tcpe:2.3:o:cisco:ios:15.5\(1\)t:*:*:*:*:*:*:*
ciscoios15.5(1)t1cpe:2.3:o:cisco:ios:15.5\(1\)t1:*:*:*:*:*:*:*
ciscoios15.5tcpe:2.3:o:cisco:ios:15.5t:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

6.7

Confidence

Low

EPSS

0.004

Percentile

74.3%

Related for NVD:CVE-2015-0610