CVE-2020-3231 describes a vulnerability in the 802.1X feature of Cisco Catalyst 2960-L and CDB-8P Series Switches, allowing an unauthenticated, adjacent attacker to forward broadcast traffic on an 802.1X-enabled port before authentication. The vulnerability is rated Medium severity (CVSS 4.7), requiring adjacent access with low attack complexity, and could lead to unauthorized broadcast traffic transmission and reception. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
15.2\(5\)e2CPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.2\(5\)e2:*:*:*:*:*:*:* | ||
15.2\(5\)exCPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.2\(5\)ex:*:*:*:*:*:*:* | ||
15.2\(5a\)eCPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.2\(5a\)e:*:*:*:*:*:*:* | ||
15.2\(5b\)eCPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.2\(5b\)e:*:*:*:*:*:*:* | ||
15.2\(5c\)eCPE matchmatch criteria | cpe:2.3:o:cisco:ios:15.2\(5c\)e:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.