CVE-2016-1452: Infoleak
Published Jul 15, 2016
·Updated
Cisco ASR 5000 devices with software 18.3 through 20.0.0 allow remote attackers to make configuration changes over SNMP by leveraging knowledge of the read-write community, aka Bug ID CSCuz29526.
Affected Software
12 affected components
Cisco ASR 5000
Cisco Asr 5000 Software=18.3.0
Cisco Asr 5000 Software=18.3_base
Cisco Asr 5000 Software=19.0.1
Cisco Asr 5000 Software=19.0.m0.60737
Cisco Asr 5000 Software=19.0.m0.60828
Cisco Asr 5000 Software=19.0.m0.61045
Cisco Asr 5000 Software=19.1.0
Cisco Asr 5000 Software=19.1.0.61559
Cisco Asr 5000 Software=19.2.0
Cisco Asr 5000 Software=19.3.0
Cisco Asr 5000 Software=20.0.0
Event History
Jul 15, 2016
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1452?
CVE-2016-1452 has been assigned a medium severity rating due to its potential impact on device configuration.
2
How do I fix CVE-2016-1452?
To mitigate CVE-2016-1452, ensure that SNMP read-write community strings are changed to strong, unique values and restrict SNMP access to trusted hosts.
3
Which Cisco ASR 5000 versions are affected by CVE-2016-1452?
CVE-2016-1452 affects Cisco ASR 5000 devices running software versions 18.3 through 20.0.0.
4
Can CVE-2016-1452 be exploited remotely?
Yes, CVE-2016-1452 can be exploited remotely by attackers who know the read-write community string.
5
What type of attacks does CVE-2016-1452 enable?
CVE-2016-1452 enables remote attackers to make unauthorized configuration changes over SNMP.