1 results (0.028 seconds)

CVSS: 6.8EPSS: 0%CPEs: 1EXPL: 0

05 Oct 2018 — A vulnerability in Cisco IOS ROM Monitor (ROMMON) Software for Cisco Catalyst 6800 Series Switches could allow an unauthenticated, local attacker to bypass Cisco Secure Boot validation checks and load a compromised software image on an affected device. The vulnerability is due to the presence of a hidden command in the affected software. An attacker could exploit this vulnerability by connecting to an affected device via the console, forcing the device into ROMMON mode, and writing a malicious pattern to a ... • http://www.securityfocus.com/bid/105412 • CWE-264: Permissions, Privileges, and Access Controls •