The extended ACL functionality in Cisco IOS 12.2(58)SE2 and 15.0(1)SE discards all lines that end with a log or time keyword, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by sending network traffic, aka Bug ID CSCts01106.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2012-05-02T10:00:00

Updated: 2024-08-06T18:23:30.834Z

Reserved: 2012-01-04T00:00:00

Link: CVE-2012-0362

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2012-05-02T10:09:22.253

Modified: 2012-10-30T04:00:13.597

Link: CVE-2012-0362

cve-icon Redhat

No data.