← Back

CVE-2015-6280

nvd nist
Published: Sep 28, 2015Modified: May 6, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

The SSHv2 functionality in Cisco IOS 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.6E before 3.6.3E, 3.7E before 3.7.1E, 3.10S before 3.10.6S, 3.11S before 3.11.4S, 3.12S before 3.12.3S, 3.13S before 3.13.3S, and 3.14S before 3.14.1S does not properly implement RSA authentication, which allows remote attackers to obtain login access by leveraging knowledge of a username and the associated public key, aka Bug ID CSCus73013.

Affected (74)

Products: Cisco: Ios, Ios Xe
2 products
Ios
Ios Xe
Configuration A
74 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 15.2(1)sy0a
Version 15.2(1)sy
Version 15.2(2)e1
Version 15.2(2)e2
Version 15.2(2)e
Version 15.2(2)ea1
Version 15.2(2a)e1
Version 15.2(2a)e2
Version 15.2(3)e
Version 15.2(3)ea
Version 15.2(3a)e
Version 15.3(3)m1
Version 15.3(3)m2
Version 15.3(3)m3
Version 15.3(3)m4
Version 15.3(3)m5
Version 15.3(3)s1
Version 15.3(3)s1a
Version 15.3(3)s2
Version 15.3(3)s3
Version 15.3(3)s4
Version 15.3(3)s5
Version 15.3(3)s
Version 15.4(1)cg1
Version 15.4(1)cg
Version 15.4(1)s1
Version 15.4(1)s2
Version 15.4(1)s3
Version 15.4(1)s
Version 15.4(1)t1
Version 15.4(1)t2
Version 15.4(1)t3
Version 15.4(1)t
Version 15.4(2)cg
Version 15.4(2)s1
Version 15.4(2)s2
Version 15.4(2)s
Version 15.4(2)t1
Version 15.4(2)t2
Version 15.4(2)t
Version 15.4(3)m1
Version 15.4(3)m2
Version 15.4(3)m
Version 15.4(3)s1
Version 15.4(3)s2
Version 15.4(3)s
Version 15.5(1)s
Version 15.5(1)t
Cisco
Version 3.10s.01
Version 3.10s.0
Version 3.10s.0a
Version 3.10s.1
Version 3.10s.2
Version 3.10s.3
Version 3.10s.4
Version 3.10s.5
Version 3.11s.0
Version 3.11s.1
Version 3.11s.2
Version 3.11s.3
Version 3.12s.0
Version 3.12s.1
Version 3.12s.2
Version 3.13s.0
Version 3.13s.1
Version 3.13s.2
Version 3.14s.0
Version 3.6e.0
Version 3.6e.0a
Version 3.6e.0b
Version 3.6e.1
Version 3.6e.2
Version 3.6e.2a
Version 3.7e.0

Timeline

No history available yet.