CVE-2015-0607
published 2015-03-06CVE-2015-0607: The Authentication Proxy feature in Cisco IOS does not properly handle invalid AAA return codes from RADIUS and TACACS+ servers, which allows remote attackers…
PriorityP429medium4.3CVSS 2.0
AVNACMAuNCPINAN
EPSS
1.97%
78.3th percentile
The Authentication Proxy feature in Cisco IOS does not properly handle invalid AAA return codes from RADIUS and TACACS+ servers, which allows remote attackers to bypass authentication in opportunistic circumstances via a connection attempt that triggers an invalid code, as demonstrated by a connection attempt with a blank password, aka Bug IDs CSCuo09400 and CSCun16016.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
vendor_cisco4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hmcj-2mfv-vx8m: The Authentication Proxy feature in Cisco IOS does not properly handle invalid AAA return codes from RADIUS and TACACS+ servers, which allows remote a
ghsa_unreviewed·2022-05-17
CVE-2015-0607 [MEDIUM] CWE-287 GHSA-hmcj-2mfv-vx8m: The Authentication Proxy feature in Cisco IOS does not properly handle invalid AAA return codes from RADIUS and TACACS+ servers, which allows remote a
The Authentication Proxy feature in Cisco IOS does not properly handle invalid AAA return codes from RADIUS and TACACS+ servers, which allows remote attackers to bypass authentication in opportunistic circumstances via a connection attempt that triggers an invalid code, as demonstrated by a connection attempt with a blank password, aka Bug IDs CSCuo09400 and CSCun16016.
Cisco
Cisco IOS Software Authentication Proxy Bypass Vulnerability
vendor_cisco·2015-03-03·CVSS 4.3
CVE-2015-0607 [MEDIUM] CWE-287 Cisco IOS Software Authentication Proxy Bypass Vulnerability
Cisco IOS Software Authentication Proxy Bypass Vulnerability
A vulnerability in the Authentication Proxy feature of Cisco IOS Software could allow a remote attacker to bypass the authentication.
The vulnerability is due to the incorrect processing of unsupported Authentication, Authorization, and Accounting (AAA) return codes from the AAA feature by the Authentication Proxy. An attacker could exploit this vulnerability by, for example, connecting with an empty password and hoping that the AAA server (RADIUS or TACACS+) will reply to Cisco IOS with a code that is not supported by the Authentication Proxy feature.
Cisco has confirmed the vulnerability in a security notice and released software updates.
A successful exploit could allow the attacker the ability to authenticate to a target
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2015-0607http://tools.cisco.com/security/center/viewAlert.x?alertId=37711http://www.securityfocus.com/bid/72794http://www.securitytracker.com/id/1031817http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2015-0607http://tools.cisco.com/security/center/viewAlert.x?alertId=37711http://www.securityfocus.com/bid/72794http://www.securitytracker.com/id/1031817
2015-03-06
Published