The extended ACL functionality in Cisco IOS 12.2(58)SE2 and 15.0(1)SE discards all lines that end with a log or time keyword, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by sending network traffic, aka Bug ID CSCts01106.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2012-05-02T10:00:00
Updated: 2024-08-06T18:23:30.834Z
Reserved: 2012-01-04T00:00:00
Link: CVE-2012-0362
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-05-02T10:09:22.253
Modified: 2012-10-30T04:00:13.597
Link: CVE-2012-0362
Redhat
No data.