CVE-2022-20661

Multiple vulnerabilities that affect Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches could allow an attacker to execute persistent code at boot time or to permanently prevent the device from booting, resulting in a permanent denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*
OR cpe:2.3:h:cisco:cdb-8p:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:cdb-8u:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:15.2\(8\)e:*:*:*:*:*:*:*
OR cpe:2.3:h:cisco:cmicr-4pc:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:cmicr-4ps:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:cmicr-4pt:-:*:*:*:*:*:*:*

History

25 Apr 2022, 15:19

Type Values Removed Values Added
CWE CWE-665
CPE cpe:2.3:h:cisco:cmicr-4ps:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:cmicr-4pt:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:cdb-8p:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:15.2\(8\)e:*:*:*:*:*:*:*
cpe:2.3:h:cisco:cmicr-4pc:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*
cpe:2.3:h:cisco:cdb-8u:-:*:*:*:*:*:*:*
References (CISCO) https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cdb-cmicr-vulns-KJjFtNb - (CISCO) https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cdb-cmicr-vulns-KJjFtNb - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 4.9
v3 : 4.6

15 Apr 2022, 15:22

Type Values Removed Values Added
New CVE

Information

Published : 2022-04-15 15:15

Updated : 2024-02-04 22:29


NVD link : CVE-2022-20661

Mitre link : CVE-2022-20661

CVE.ORG link : CVE-2022-20661


JSON object : View

Products Affected

cisco

  • cdb-8u
  • ios
  • cmicr-4ps
  • cmicr-4pt
  • cmicr-4pc
  • cdb-8p
CWE
CWE-665

Improper Initialization

CWE-1221

Incorrect Register Defaults or Module Parameters