Vulnerability Bulletins

Cisco Small Business Series Switches Stacked Reload ACL Bypass Vulnerability


System information

   
Affected software Cisco

Description

A vulnerability with the access control list (ACL) management within a stacked switch configuration of Cisco Business 250 Series Smart Switches and Business 350 Series Managed Switches could allow an unauthenticated, remote attacker to bypass protection offered by a configured ACL on an affected device. This vulnerability is due to incorrect processing of ACLs on a stacked configuration when either the primary or backup switches experience a full stack reload or power cycle. An attacker could

More info:

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sb-bus-acl-bypass-5zn9hNJk?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20Small%20Business%20Series%20Switches%20Stacked%20Reload%20ACL%20Bypass%20Vulnerability&vs_k=1

Standar resources

Property Value
CVE CVE-2024-20263.

Version history

Version Comments Date
Ministerio de Defensa
CNI
CCN
CCN-CERT