CVE-2013-6979
N/A
N/A
Summary
The VTY authentication implementation in Cisco IOS XE 03.02.xxSE and 03.03.xxSE incorrectly relies on the Linux-IOS internal-network configuration, which allows remote attackers to bypass authentication by leveraging access to a 192.168.x.2 source IP address, aka Bug ID CSCuj90227.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/89901
- http://www.securitytracker.com/id/1029537
- http://osvdb.org/101351
- http://www.securityfocus.com/bid/64502
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6979
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/89901
- http://www.securitytracker.com/id/1029537
- http://osvdb.org/101351
- http://www.securityfocus.com/bid/64502
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6979
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.