Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The NTP implementation in Cisco IOS and IOS XE does not properly support use of the access-group command for a "deny all" configuration, which allows remote attackers to bypass intended restrictions on time synchronization via a standard query, aka Bug ID CSCuj66318.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco IOS和IOS XE 权限许可和访问控制漏洞
Vulnerability Description
Cisco IOS和IOS-XE都是美国思科(Cisco)公司为其网络设备开发的操作系统。 Cisco IOS和IOS XE软件的Network Time Protocol(NTP)access-group命令的实现过程中存在安全漏洞,该漏洞源于程序没有正确实现ntp access-group命令。远程攻击者可通过发送NTP查询数据包利用该漏洞绕过既定的限制。
CVSS Information
N/A
Vulnerability Type
N/A