The TCL interpreter in Cisco IOS 15.2 does not properly maintain the vty state, which allows local users to gain privileges by starting a session very soon after a TCL script execution, aka Bug ID CSCuq24202.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2015-06-13T10:00:00

Updated: 2024-08-06T06:04:02.923Z

Reserved: 2015-06-04T00:00:00

Link: CVE-2015-4185

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2015-06-13T10:59:01.097

Modified: 2017-01-04T16:27:09.143

Link: CVE-2015-4185

cve-icon Redhat

No data.