QID 317411
Date Published: 2024-02-05
QID 317411: Cisco Small Business Series (Smart, Managed and Stackable) Switches Multiple Vulnerabilities (cisco-sa-sb-bus-acl-bypass-5zn9hNJk)
A vulnerability with the access control list (ACL) management within a stacked switch configuration of Cisco Business 250 Series Smart Switches and Business 350 Series Managed Switches could allow an unauthenticated, remote attacker to bypass protection offered by a configured ACL on an affected device.
Note: In the vulnerable state, the ACL would be correctly applied on the primary devices but could be incorrectly applied to the backup devices.
Affected Products
250 Series Smart Switches
350 Series Managed Switches
350X Series Stackable Managed Switches
550X Series Stackable Managed Switches
Vulnerable Version:
Prior to version 2.5.9.54
Note: This is a potential check as ACLs configured check not added and the device model cannot be confirmed.
QID Detection Logic (Unauthenticated):
The unauthenticated check tries to fetch the Cisco Smart Switch vulnerable version in response to GET request to an API, but not the model number.
A successful exploit could allow the attacker to bypass configured ACLs, causing traffic to be dropped or forwarded in an unexpected manner.
Customers are advised to refer to cisco-sa-sb-bus-acl-bypass-5zn9hNJk for more information.
- cisco-sa-sb-bus-acl-bypass-5zn9hNJk -
sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sb-bus-acl-bypass-5zn9hNJk
CVEs related to QID 317411
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-sb-bus-acl-bypass-5zn9hNJk |
|