CVE-2019-1842
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.5
Source: NVD
Description
A vulnerability in the Secure Shell (SSH) authentication function of Cisco IOS XR Software could allow an authenticated, remote attacker to successfully log in to an affected device using two distinct usernames. The vulnerability is due to a logic error that may occur when certain sequences of actions are processed during an SSH login event on the affected device. An attacker could exploit this vulnerability by initiating an SSH session to the device with a specific sequence that presents the two usernames. A successful exploit could result in logging data misrepresentation, user enumeration, or, in certain circumstances, a command authorization bypass. See the Details section for more information.
Affected (4)
Products: Cisco: Ios Xr Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6.1.2.tools |
| Running on/with | Platform Versions |
|---|---|
Cisco Asr 9001 | All versions |
Cisco Asr 9006 | All versions |
Cisco Asr 9010 | All versions |
Cisco Asr 9901 | All versions |
Cisco Asr 9904 | All versions |
Cisco Asr 9906 | All versions |
Cisco Asr 9910 | All versions |
Cisco Asr 9912 | All versions |
Cisco Asr 9922 | All versions |
Cisco Crs 1 16 Slot Line Card Chassis | All versions |
Cisco Crs 1 16 Slot Single Shelf System | All versions |
Cisco Crs 1 4 Slot Single Shelf System | All versions |
Cisco Crs 1 8 Slot Line Card Chassis | All versions |
Cisco Crs 1 8 Slot Single Shelf System | All versions |
Cisco Crs 1 Fabric Card Chassis | All versions |
Cisco Crs 1 Line Card Chassis (dual) | All versions |
Cisco Crs 1 Line Card Chassis (multi) | All versions |
Cisco Crs 1 Multishelf System | All versions |
Cisco Crs 3 16 Slot Single Shelf System | All versions |
Cisco Crs 3 4 Slot Single Shelf System | All versions |
Cisco Crs 3 8 Slot Single Shelf System | All versions |
Cisco Crs 3 Multishelf System | All versions |
Cisco Crs 8/s B Crs | All versions |
Cisco Crs 8/scrs | All versions |
Cisco Crs X 16 Slot Single Shelf System | All versions |
Cisco Crs X Multishelf System | All versions |
Cisco Ncs 6008 8 Slot Chassis | All versions |
Cisco Network Convergence System 5508 | All versions |
Related CWEs
CWE-285
Improper Authorization
The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.
CWE-287
Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
References (4)
Source: psirt@cisco.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.