CVE-2009-0637
published 2009-03-27CVE-2009-0637: The SCP server in Cisco IOS 12.2 through 12.4, when Role-Based CLI Access is enabled, does not enforce the CLI view configuration for file transfers, which…
PriorityP336high7.1CVSS 2.0
AVNACHAuSCCICAC
EPSS
3.32%
87.3th percentile
The SCP server in Cisco IOS 12.2 through 12.4, when Role-Based CLI Access is enabled, does not enforce the CLI view configuration for file transfers, which allows remote authenticated users with an attached CLI view to (1) read or (2) overwrite arbitrary files via an SCP command.
Affected
188 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
CVSS provenance
nvdv2.07.1HIGHAV:N/AC:H/Au:S/C:C/I:C/A:C
vendor_cisco9.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-34xj-9w8p-f4vf: The SCP server in Cisco IOS 12
ghsa_unreviewed·2022-05-02
CVE-2009-0637 [HIGH] GHSA-34xj-9w8p-f4vf: The SCP server in Cisco IOS 12
The SCP server in Cisco IOS 12.2 through 12.4, when Role-Based CLI Access is enabled, does not enforce the CLI view configuration for file transfers, which allows remote authenticated users with an attached CLI view to (1) read or (2) overwrite arbitrary files via an SCP command.
Cisco
Cisco IOS Software Secure Copy Privilege Escalation Vulnerability
vendor_cisco·2009-03-25·CVSS 9.0
CVE-2009-0637 [CRITICAL] CWE-264 Cisco IOS Software Secure Copy Privilege Escalation Vulnerability
Cisco IOS Software Secure Copy Privilege Escalation Vulnerability
The server side of the Secure Copy (SCP) implementation in Cisco IOS
software contains a vulnerability that could allow authenticated users with an
attached command-line interface (CLI) view to transfer files to and from a
Cisco IOS device that is configured to be an SCP server, regardless of what
users are authorized to do, per the CLI view configuration. This vulnerability
could allow valid users to retrieve or write to any file on the device's file
system, including the device's saved configuration and Cisco IOS image files,
even if the CLI view attached to the user does not allow it. This configuration
file may include passwords or other sensitive information.
The Cisco IOS SCP server is an optional service that is di
Cisco
Cisco IOS Software Secure Copy Privilege Escalation Vulnerability
vendor_cisco
CVE-2009-0637 Cisco IOS Software Secure Copy Privilege Escalation Vulnerability
CVE-2009-0637: Cisco IOS Software Secure Copy Privilege Escalation Vulnerability
The server side of the Secure Copy (SCP) implementation in Cisco IOS software contains a vulnerability that could allow authenticated users with an attached command-line interface (CLI) view to transfer files to and from a Cisco IOS device that is configured to be an SCP server, regardless of what users are authorized to do, per the CLI view configuration. This vulnerability could allow valid users to retrieve or write to any file on the device's file system, including the device's saved configuration and Cisco IOS image files, even if the CLI view attached to the user does not allow it. This configuration file may include passwords or other sensitive information. The Cisco IOS SCP server is an optional servic
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/34438http://securitytracker.com/id?1021899http://www.cisco.com/en/US/products/products_security_advisory09186a0080a90469.shtmlhttp://www.cisco.com/en/US/products/products_security_advisory09186a0080a904c8.shtmlhttp://www.securityfocus.com/bid/34247http://www.vupen.com/english/advisories/2009/0851https://exchange.xforce.ibmcloud.com/vulnerabilities/49423http://secunia.com/advisories/34438http://securitytracker.com/id?1021899http://www.cisco.com/en/US/products/products_security_advisory09186a0080a90469.shtmlhttp://www.cisco.com/en/US/products/products_security_advisory09186a0080a904c8.shtmlhttp://www.securityfocus.com/bid/34247http://www.vupen.com/english/advisories/2009/0851https://exchange.xforce.ibmcloud.com/vulnerabilities/49423
2009-03-27
Published