Cisco IOS 15.2(04)M6 and 15.4(03)S lets physical-interface ACLs supersede tunnel-interface ACLs, which allows remote attackers to bypass intended network-traffic restrictions in opportunistic circumstances by using a tunnel, aka Bug ID CSCur01042.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2015-11-13T02:00:00

Updated: 2024-08-06T07:22:20.873Z

Reserved: 2015-08-17T00:00:00

Link: CVE-2015-6366

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2015-11-13T03:59:02.913

Modified: 2016-12-07T18:19:55.943

Link: CVE-2015-6366

cve-icon Redhat

No data.