First published: Mon Oct 10 2022(Updated: )
A vulnerability in the password-recovery disable feature of Cisco IOS XE ROM Monitor (ROMMON) Software for Cisco Catalyst Switches could allow an unauthenticated, local attacker to recover the configuration or reset the enable password. This vulnerability is due to a problem with the file and boot variable permissions in ROMMON. An attacker could exploit this vulnerability by rebooting the switch into ROMMON and entering specific commands through the console. A successful exploit could allow the attacker to read any file or reset the enable password.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XE ROM Monitor | ||
Cisco Catalyst 3650-24TD-E | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-12X48UR | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-12X48UR-L | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-12x48UZ-L | ||
Cisco Catalyst 3650-12x48uz-s | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-24PD-S | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-24PS-L | ||
Cisco Catalyst 3650-24PS | ||
Cisco Catalyst 3650-24TD-E | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-24TD Switch | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-48FQ-L | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-48FQM Switch | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-48FQM Switch | ||
Cisco Catalyst 3650 Series Switch | ||
Cisco Catalyst 3650 Series Switch WS-C3650-48FS | ||
Cisco Catalyst 3650 Series Switch WS-C3650-48FS | ||
Cisco Catalyst 3650-48PD-E | ||
Cisco Catalyst 3650-48PD | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-48PQ-L | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-48PS-L | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 Series | ||
Cisco Catalyst 3650-48TQ-S | ||
Cisco Catalyst 3650-48TS Switch | ||
Cisco Catalyst 3650-48TS Switch | ||
Cisco Catalyst 3650-48TS Switch | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-8X24UQ | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-8X24UQ | ||
Cisco Catalyst 3650-8X24UQ | ||
Cisco Catalyst 3850 Series | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-12X48U-E | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 Series | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 9300-24s-e Firmware | ||
Cisco Catalyst 3850-24S-S | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-24T-L | ||
Cisco Catalyst 3850-24T-S | ||
Cisco Catalyst 3850-24U | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-24XS | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-24XU | ||
Cisco Catalyst 3850-24XU | ||
Cisco Catalyst 3850-24XU | ||
Cisco Catalyst 3850-24XU | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 Series | ||
Cisco Catalyst 3850 48 Port PoE Switch | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 Series | ||
Cisco Catalyst 3850 48 Port PoE Switch | ||
Cisco Catalyst 3850-48T-E | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 Series | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-48U-E | ||
Cisco Catalyst 3850-48U | ||
Cisco Catalyst 3850-48U | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-48XS | ||
Cisco Catalyst 3850-48XS | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 9200CX | ||
Cisco Catalyst 9200CX | ||
Cisco Catalyst 9200 Series | ||
Cisco Catalyst C9300-24P | ||
Cisco Catalyst 9300-24p-a Firmware | ||
Cisco Catalyst 9300-24p-e Firmware | ||
Cisco Catalyst 9300-24s-a Firmware | ||
Cisco Catalyst 9300-24s-e Firmware | ||
Cisco Catalyst 9300-24T-A Firmware | ||
Cisco Catalyst 9300-24t-e Firmware | ||
Cisco Catalyst 9300-24u-a Firmware | ||
Cisco Catalyst 9300-24u-e Firmware | ||
Cisco Catalyst 9300-24ux-a Firmware | ||
Cisco Catalyst 9300-24ux-e Firmware | ||
Cisco Catalyst 9300-48p-a Firmware | ||
Cisco Catalyst 9300-48p-e Firmware | ||
Cisco Catalyst 9300-48s-a Firmware | ||
Cisco Catalyst 9300-48s-e Firmware | ||
Cisco Catalyst 9300-48T-A Firmware | ||
Cisco Catalyst 9300-48t-e Firmware | ||
Cisco Catalyst 9300-48U-A Firmware | ||
Cisco Catalyst 9300-48u-e Firmware | ||
Cisco Catalyst 9300-48un-a Firmware | ||
Cisco Catalyst 9300-48un-e Firmware | ||
Cisco Catalyst 9300-48UXM-A Firmware | ||
Cisco Catalyst 9300-48uxm-e Firmware | ||
Cisco Catalyst 9300l Firmware | ||
Cisco Catalyst 9300L-24P-4G-A Firmware | ||
Cisco Catalyst 9300l-24p-4g-e Firmware | ||
Cisco Catalyst 9300L-24P-4X-A Firmware | ||
Cisco Catalyst 9300L-48P-4X-E Firmware | ||
Cisco Catalyst 9300l-24t-4g-a Firmware | ||
Cisco Catalyst 9300L-24T-4G-E Firmware | ||
Cisco Catalyst 9300L-24T-4X-A Firmware | ||
Cisco Catalyst 9300L-24T-4X-E Firmware | ||
Cisco Catalyst 9300L-48P-4G-A Firmware | ||
Cisco Catalyst 9300l-48p-4g-e Firmware | ||
Cisco Catalyst 9300l-48p-4x-a Firmware | ||
Cisco Catalyst 9300L-48P-4X-E Firmware | ||
Cisco Catalyst 9300l-48t-4g-a Firmware | ||
Cisco Catalyst 9300l-48t-4g-e Firmware | ||
Cisco Catalyst 9300l-48t-4x-a Firmware | ||
Cisco Catalyst 9300L-48T-4X-E Firmware | ||
Cisco Catalyst 9300L Stack | ||
Cisco Catalyst 9300lm Firmware | ||
Cisco Catalyst 9300x Firmware | ||
Cisco Catalyst 9400 | ||
Cisco Catalyst 9407R | ||
Cisco Catalyst C9410R | ||
Cisco Catalyst C9500 | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst 9600 Series | ||
Cisco Catalyst 9600 | ||
Cisco Catalyst c2928-24lt-c | ||
Cisco Catalyst c2928-48tc-c | ||
Cisco Catalyst 3850-12X48U-E | ||
Cisco Catalyst 3850-12X48U-L | ||
Cisco Catalyst 3850-12X48U-S | ||
Cisco Catalyst C9200 | ||
Cisco Catalyst 9200 Series | ||
Cisco Catalyst C9200 | ||
Cisco Catalyst 9200 Series | ||
Cisco Catalyst C9200L | ||
Cisco Catalyst C9200L | ||
Cisco Catalyst C9200L | ||
Cisco Catalyst C9200L-24PXG-4X | ||
Cisco Catalyst C9200L | ||
Cisco Catalyst C9200L | ||
Cisco Catalyst C9200L | ||
Cisco Catalyst C9200L | ||
Cisco Catalyst C9200L-24PXG-2Y | ||
Cisco Catalyst C9200L-48PXG-4X | ||
Cisco Catalyst C9200L | ||
Cisco Catalyst C9200L | ||
Cisco Catalyst 9300 | ||
Cisco Catalyst 9300 | ||
Cisco Catalyst 9300 | ||
Cisco Catalyst 9300 | ||
Cisco Catalyst 9300-24ux-e Firmware | ||
Cisco Catalyst C9300-48P | ||
Cisco Catalyst C9300 | ||
Cisco Catalyst 9300 | ||
Cisco Catalyst 9300 | ||
Cisco Catalyst C9300-48UN | ||
Cisco Catalyst 9300 | ||
Cisco Catalyst C9300 | ||
Cisco Catalyst C9300L-24P-4X | ||
Cisco Catalyst 9300L-24T-4G | ||
Cisco Catalyst 9300 | ||
Cisco Catalyst 9300L-48P-4G-E Firmware | ||
Cisco Catalyst 9300 Series Switches | ||
Cisco Catalyst C9300 | ||
Cisco Catalyst 9300L-48T-4X-A Firmware | ||
Cisco Catalyst C9404R | ||
Cisco Catalyst 9407R | ||
Cisco Catalyst 9410R | ||
Cisco Catalyst C9500 | ||
Cisco Catalyst C9500-12Q-A | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst C9500 | ||
Cisco Catalyst C9500-16X-A | ||
Cisco Catalyst 9500 Series | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst C9500 Series Switches | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst C9500-24Y4C | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst 9500 Series | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst 9500-40X-A | ||
Cisco Catalyst 9500-40X-E | ||
Cisco Catalyst C9500-48Y4C | ||
Cisco Catalyst 9600 Series | ||
Cisco Catalyst 9600 | ||
Cisco Catalyst 9600 | ||
Cisco Catalyst c9600-lc-48yl |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-20864 has been assigned a severity rating of high due to its potential to allow unauthorized configuration recovery.
To fix CVE-2022-20864, upgrade the Cisco IOS XE ROMMON Software to the latest version provided by Cisco.
CVE-2022-20864 affects Cisco Catalyst Switches with IOS XE ROMMON Software, particularly models like the Catalyst 3650 and 3850.
No, CVE-2022-20864 requires local access for an attacker to take advantage of the vulnerability.
Organizations may face unauthorized access to configurations or password resets, which could compromise network security.