7.1

CVE-2009-2863

Race condition in the Firewall Authentication Proxy feature in Cisco IOS 12.0 through 12.4 allows remote attackers to bypass authentication, or bypass the consent web page, via a crafted request, aka Bug ID CSCsy15227.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoIos Version12.0xk
CiscoIos Version12.0xr
CiscoIos Version12.1
CiscoIos Version12.1e
CiscoIos Version12.1ex
CiscoIos Version12.1t
CiscoIos Version12.1xc
CiscoIos Version12.1xh
CiscoIos Version12.1xi
CiscoIos Version12.1xj
CiscoIos Version12.1xm
CiscoIos Version12.1xp
CiscoIos Version12.1xr
CiscoIos Version12.1yb
CiscoIos Version12.1yd
CiscoIos Version12.1yf
CiscoIos Version12.1yi
CiscoIos Version12.2
CiscoIos Version12.2b
CiscoIos Version12.2bw
CiscoIos Version12.2cz
CiscoIos Version12.2dd
CiscoIos Version12.2ex
CiscoIos Version12.2ey
CiscoIos Version12.2fz
CiscoIos Version12.2ira
CiscoIos Version12.2irb
CiscoIos Version12.2irc
CiscoIos Version12.2ixa
CiscoIos Version12.2ixb
CiscoIos Version12.2ixc
CiscoIos Version12.2ixd
CiscoIos Version12.2ixe
CiscoIos Version12.2ixf
CiscoIos Version12.2ixg
CiscoIos Version12.2s
CiscoIos Version12.2sbc
CiscoIos Version12.2se
CiscoIos Version12.2sec
CiscoIos Version12.2sed
CiscoIos Version12.2see
CiscoIos Version12.2sef
CiscoIos Version12.2seg
CiscoIos Version12.2sg
CiscoIos Version12.2sga
CiscoIos Version12.2sq
CiscoIos Version12.2sra
CiscoIos Version12.2srb
CiscoIos Version12.2src
CiscoIos Version12.2su
CiscoIos Version12.2sx
CiscoIos Version12.2sxa
CiscoIos Version12.2sxb
CiscoIos Version12.2sxd
CiscoIos Version12.2sxe
CiscoIos Version12.2sxf
CiscoIos Version12.2sxh
CiscoIos Version12.2sxi
CiscoIos Version12.2t
CiscoIos Version12.2tpc
CiscoIos Version12.2xa
CiscoIos Version12.2xb
CiscoIos Version12.2xd
CiscoIos Version12.2xe
CiscoIos Version12.2xg
CiscoIos Version12.2xj
CiscoIos Version12.2xk
CiscoIos Version12.2xl
CiscoIos Version12.2xm
CiscoIos Version12.2xo
CiscoIos Version12.2xq
CiscoIos Version12.2xt
CiscoIos Version12.2xv
CiscoIos Version12.2xw
CiscoIos Version12.2ya
CiscoIos Version12.2yb
CiscoIos Version12.2yc
CiscoIos Version12.2ye
CiscoIos Version12.2yf
CiscoIos Version12.2yh
CiscoIos Version12.2yl
CiscoIos Version12.2ym
CiscoIos Version12.2yn
CiscoIos Version12.2yq
CiscoIos Version12.2yu
CiscoIos Version12.2yv
CiscoIos Version12.2yx
CiscoIos Version12.2yz
CiscoIos Version12.2zd
CiscoIos Version12.2zh
CiscoIos Version12.2zj
CiscoIos Version12.2zl
CiscoIos Version12.2zy
CiscoIos Version12.2zya
CiscoIos Version12.3
CiscoIos Version12.3b
CiscoIos Version12.3jk
CiscoIos Version12.3t
CiscoIos Version12.3tpc
CiscoIos Version12.3va
CiscoIos Version12.3xa
CiscoIos Version12.3xc
CiscoIos Version12.3xd
CiscoIos Version12.3xe
CiscoIos Version12.3xf
CiscoIos Version12.3xg
CiscoIos Version12.3xk
CiscoIos Version12.3xl
CiscoIos Version12.3xq
CiscoIos Version12.3xr
CiscoIos Version12.3xx
CiscoIos Version12.3ya
CiscoIos Version12.3yd
CiscoIos Version12.3yg
CiscoIos Version12.3yh
CiscoIos Version12.3yi
CiscoIos Version12.3yk
CiscoIos Version12.3ym
CiscoIos Version12.3yt
CiscoIos Version12.3yz
CiscoIos Version12.4
CiscoIos Version12.4mr
CiscoIos Version12.4t
CiscoIos Version12.4xa
CiscoIos Version12.4xd
CiscoIos Version12.4xe
CiscoIos Version12.4xf
CiscoIos Version12.4xj
CiscoIos Version12.4xk
CiscoIos Version12.4xt
CiscoIos Version12.4xv
CiscoIos Version12.4xw
CiscoIos Version12.4xy
CiscoIos Version12.4xz
CiscoIos Version12.4ya
CiscoIos Version12.4yb
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.41% 0.581
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.1 8.6 6.9
AV:N/AC:M/Au:N/C:C/I:N/A:N
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.