5
CVSSv2

CVE-2012-0338

Published: 02/05/2012 Updated: 30/10/2012
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cisco IOS 12.2 up to and including 12.4 and 15.0 does not recognize the vrf-also keyword during enforcement of access-class commands, which allows remote malicious users to establish SSH connections from arbitrary source IP addresses via a standard SSH client, aka Bug ID CSCsv86113.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 12.3

cisco ios 12.4

cisco ios 12.2

cisco ios 15.0