cisco-sa-snmp-uhv6ZDeF: Cisco IOS XR Software SNMP Management Plane Protection ACL Bypass Vulnerability
Published Mar 13, 2024
·Updated
A vulnerability in the UDP forwarding code of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to bypass configured management plane protection policies and access the Simple Network Management Plane (SNMP) server of an affected device.This vulnerability is due
Affected Software
1 affected component
Cisco IOS XR Software
Event History
Mar 13, 2024
Advisory Published
via Cisco·04:00 PM
Data Sourced
via Cisco·04:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of cisco-sa-snmp-uhv6ZDeF?
The cisco-sa-snmp-uhv6ZDeF vulnerability is rated as high severity.
2
How do I fix cisco-sa-snmp-uhv6ZDeF?
To fix cisco-sa-snmp-uhv6ZDeF, apply the available patches and updates from Cisco for the affected IOS XR Software.
3
What devices are affected by cisco-sa-snmp-uhv6ZDeF?
Devices running Cisco IOS XR Software are affected by the cisco-sa-snmp-uhv6ZDeF vulnerability.
4
Can cisco-sa-snmp-uhv6ZDeF be exploited remotely?
cisco-sa-snmp-uhv6ZDeF can be exploited by an unauthenticated, adjacent attacker.
5
What type of access does cisco-sa-snmp-uhv6ZDeF allow?
cisco-sa-snmp-uhv6ZDeF allows attackers to bypass management plane protection and access the SNMP server.