vulnerability
Cisco IOS and IOS XE Software Smart Install "Protocol Misuse"
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
10 | (AV:N/AC:L/Au:N/C:C/I:C/A:C) | 2017-02-14 | 2017-08-18 | 2025-02-18 |
Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
2017-02-14
Added
2017-08-18
Modified
2025-02-18
Description
Exposure of the Smart Install Protocol allows complete compromise of the target switch and poses a risk to any device connecting to or through it.
Solution
cisco-disable-smi
References
- URL-https://blog.talosintelligence.com/2017/02/cisco-coverage-for-smart-install-client.html
- URL-https://blogs.cisco.com/security/cisco-psirt-mitigating-and-detecting-potential-abuse-of-cisco-smart-install-feature
- URL-https://tools.cisco.com/security/center/content/CiscoSecurityResponse/cisco-sr-20170214-smi

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.