CVE-2018-0484
Cisco IOS and IOS XE Software Secure Shell Connection on VRF Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability in the access control logic of the Secure Shell (SSH) server of Cisco IOS and IOS XE Software may allow connections sourced from a virtual routing and forwarding (VRF) instance despite the absence of the vrf-also keyword in the access-class configuration. The vulnerability is due to a missing check in the SSH server. An attacker could use this vulnerability to open an SSH connection to an affected Cisco IOS or IOS XE device with a source address belonging to a VRF instance. Once connected, the attacker would still need to provide valid credentials to access the device.
Una vulnerabilidad en la lógica de control de acceso del servidor SSH (Secure Shell) del software de Cisco IOS e IOS XE podría permitir conexiones originadas desde una instancia VRF (Virtual Routing and Forwarding) a pesar de la ausencia de la palabra clave vrf-also en la configuración de access-class. La vulnerabilidad se debe a la falta de una comprobación en el servidor SSH. Un atacante podría emplear esta vulnerabilidad para abrir una conexión SSH a un dispositivo Cisco IOS o IOS XE con una dirección de origen perteneciente a una instancia VRF. Una vez conectado, el atacante seguiría necesitando proporcionar credenciales válidas para acceder al dispositivo.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-11-27 CVE Reserved
- 2019-01-10 CVE Published
- 2023-03-08 EPSS Updated
- 2024-09-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-284: Improper Access Control
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/106560 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 16.6.2 Search vendor "Cisco" for product "Ios" and version "16.6.2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 16.6.4 Search vendor "Cisco" for product "Ios" and version "16.6.4" | - |
Affected
|