Back to list

Cisco IOS XE Software Denial of Service Vulnerability — CISCO-SA-IOSXE-MNTC-DOS-LZWEQCYQ

Cisco · Cisco · CISCO-SA-IOSXE-MNTC-DOS-LZWEQCYQ

ID
CISCO-SA-IOSXE-MNTC-DOS-LZWEQCYQ
Date
Activity
Source
Cisco
Vendor
Cisco
Threat
medium

Summary

A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability exists because incorrect privileges are associated with the  start maintenance command. An attacker could exploit this vulnerability by accessing the management CLI of the affected device as a low-privileged user and using…

Product

Cisco IOS XE Software Denial of Service

What to do

General, cautious steps (verify details in the official source):

  • Review exposure and plan remediation based on risk and environment.
  • Identify affected product versions in your inventory and verify whether you are impacted.
  • Apply vendor patches/updates or recommended mitigations as soon as available.
  • Read the official advisory for exact affected versions and remediation steps.

Official advisory

Related advisories