CVE Database
/

CVE-2013-6979

Back to search

CVE-2013-6979

Published: Dec 23, 2013

Modified: Aug 6, 2024

PUBLISHED

Description

The VTY authentication implementation in Cisco IOS XE 03.02.xxSE and 03.03.xxSE incorrectly relies on the Linux-IOS internal-network configuration, which allows remote attackers to bypass authentication by leveraging access to a 192.168.x.2 source IP address, aka Bug ID CSCuj90227.

VendorProductVersions

n/a

n/a

affected
n/a

References

1029537
vdb-entry
x_refsource_SECTRACK
101351
vdb-entry
x_refsource_OSVDB
64502
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now