A vulnerability in access control list (ACL) functionality of the Gigabit Ethernet Management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to reach the configured IP addresses on the Gigabit Ethernet Management interface. The vulnerability is due to a logic error that was introduced in the Cisco IOS XE Software 16.1.1 Release, which prevents the ACL from working when applied against the management interface. An attacker could exploit this issue by attempting to access the device via the management interface.
History

Tue, 19 Nov 2024 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2019-03-28T00:25:28.438375Z

Updated: 2024-11-19T19:12:53.586Z

Reserved: 2018-12-06T00:00:00

Link: CVE-2019-1759

cve-icon Vulnrichment

Updated: 2024-08-04T18:28:42.802Z

cve-icon NVD

Status : Analyzed

Published: 2019-03-28T01:29:00.487

Modified: 2020-10-09T14:23:05.493

Link: CVE-2019-1759

cve-icon Redhat

No data.