CVE-2009-2862

The Object Groups for Access Control Lists (ACLs) feature in Cisco IOS 12.2XNB, 12.2XNC, 12.2XND, 12.4MD, 12.4T, 12.4XZ, and 12.4YA allows remote attackers to bypass intended access restrictions via crafted requests, aka Bug IDs CSCsx07114, CSCsu70214, CSCsw47076, CSCsv48603, CSCsy54122, and CSCsu50252.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:cisco:ios:12.2xnb:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.2xnc:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.2xnd:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4md:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4t:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4xz:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4ya:*:*:*:*:*:*:*

History

02 Jun 2022, 17:23

Type Values Removed Values Added
CPE cpe:2.3:h:cisco:ios:12.2xnd:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ios:12.4md:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ios:12.4t:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ios:12.2xnb:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ios:12.4xz:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ios:12.2xnc:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ios:12.4ya:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.2xnd:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.2xnc:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.2xnb:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4md:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4xz:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4ya:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4t:*:*:*:*:*:*:*
CWE CWE-264 NVD-CWE-noinfo
References (OSVDB) http://osvdb.org/58338 - (OSVDB) http://osvdb.org/58338 - Broken Link
References (VUPEN) http://www.vupen.com/english/advisories/2009/2759 - Vendor Advisory (VUPEN) http://www.vupen.com/english/advisories/2009/2759 - Permissions Required
References (SECTRACK) http://www.securitytracker.com/id?1022933 - (SECTRACK) http://www.securitytracker.com/id?1022933 - Broken Link, Third Party Advisory, VDB Entry
References (CISCO) http://www.cisco.com/en/US/products/products_security_advisory09186a0080af8119.shtml - Patch, Vendor Advisory (CISCO) http://www.cisco.com/en/US/products/products_security_advisory09186a0080af8119.shtml - Vendor Advisory
References (BID) http://www.securityfocus.com/bid/36495 - (BID) http://www.securityfocus.com/bid/36495 - Third Party Advisory, VDB Entry

Information

Published : 2009-09-28 19:30

Updated : 2023-12-10 10:51


NVD link : CVE-2009-2862

Mitre link : CVE-2009-2862

CVE.ORG link : CVE-2009-2862


JSON object : View

Products Affected

cisco

  • ios