QID 317357
Date Published: 2023-09-21
QID 317357: Cisco Internetwork Operating System (IOS) XR Software Access Control List Bypass Vulnerability (cisco-sa-dnx-acl-PyzDkeYF)
A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direction of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass a configured ACL.
Affected Products
Network Convergence Series (NCS) 540 Series Routers
NCS 560 Series Routers
NCS 5500 Series
NCS 5700 Series
QID Detection Logic (Authenticated):
The check matches Cisco IOS XR version retrieved via Unix Auth using "show version" command.
Note:
1 - This QID does not support IOS XR White box (IOSXRWBD)
2 - This QID does not check for configuration hence set as practice.
A successful exploit could allow the attacker to bypass an ACL on the affected device.
Customers are advised to refer to cisco-sa-dnx-acl-PyzDkeYF for more information.
- cisco-sa-dnx-acl-PyzDkeYF -
sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-dnx-acl-PyzDkeYF
CVEs related to QID 317357
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-dnx-acl-PyzDkeYF |
|