CVE-2013-6979 describes an authentication bypass vulnerability in Cisco IOS XE versions 03.02.xxSE and 03.03.xxSE. This flaw allows remote attackers to bypass VTY authentication by spoofing a 192.168.x.2 source IP address, due to an incorrect reliance on the Linux-IOS internal-network configuration. The vulnerability has a CVSS score of 5.4 (medium severity), indicating a network-based attack with high complexity but potential for complete confidentiality compromise. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:-:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:H/Au:N/C:C/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.