Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-0935

Опубликовано: 14 апр. 2011
Источник: nvd
CVSS2: 10
EPSS Низкий

Описание

The PKI functionality in Cisco IOS 15.0 and 15.1 does not prevent permanent caching of certain public keys, which allows remote attackers to bypass authentication and have unspecified other impact by leveraging an IKE peer relationship in which a key was previously valid but later revoked, aka Bug ID CSCth82164, a different vulnerability than CVE-2010-4685.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:cisco:ios:15.0:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:15.1:*:*:*:*:*:*:*

EPSS

Процентиль: 81%
0.01588
Низкий

10 Critical

CVSS2

Дефекты

CWE-310

Связанные уязвимости

github
больше 3 лет назад

The PKI functionality in Cisco IOS 15.0 and 15.1 does not prevent permanent caching of certain public keys, which allows remote attackers to bypass authentication and have unspecified other impact by leveraging an IKE peer relationship in which a key was previously valid but later revoked, aka Bug ID CSCth82164, a different vulnerability than CVE-2010-4685.

EPSS

Процентиль: 81%
0.01588
Низкий

10 Critical

CVSS2

Дефекты

CWE-310