QID 317252

Date Published: 2022-11-15

QID 317252: Cisco Catalyst 6500 and 6800 Series Switches Bypass Configured First-hop Security (FHS) Vulnerability (cisco-sa-VU855201-J3z8CKTX)

A vulnerability in the processing of stacked Ethernet tag headers of multiple Cisco products could allow an unauthenticated, adjacent attacker to bypass the FHS feature of an affected device.

QID Detection Logic (Unauthenticated):
The check matches Cisco IOS XE version retrieved via SNMP or TCP/IP Fingerprint or NTP or Telnet.

A successful exploit could allow the attacker to bypass the FHS feature of an affected device.

  • CVSS V3 rated as Medium - 4.7 severity.
  • CVSS V2 rated as Medium - 3.3 severity.
  • Solution

    Customers are advised to refer to cisco-sa-VU855201-J3z8CKTX for more information.

    CVEs related to QID 317252

    Software Advisories
    Advisory ID Software Component Link
    cisco-sa-VU855201-J3z8CKTX URL Logo www.cisco.com/c/en/us/support/docs/csa/cisco-sa-VU855201-J3z8CKTX.html#vp