CVE-2011-0935
Cisco IOS 15.0-15.1 - Authentication Bypass via Revoked PKI Key Caching
Title source: llmDescription
The PKI functionality in Cisco IOS 15.0 and 15.1 does not prevent permanent caching of certain public keys, which allows remote attackers to bypass authentication and have unspecified other impact by leveraging an IKE peer relationship in which a key was previously valid but later revoked, aka Bug ID CSCth82164, a different vulnerability than CVE-2010-4685.
References (3)
Core 3
Core References
Release Notes x_refsource_confirm
http://www.cisco.com/en/US/docs/ios/15_1/release/notes/151-2TCAVS.html
Release Notes x_refsource_confirm
http://www.cisco.com/en/US/docs/ios/15_1s/release/notes/15_1s_caveats_15_1_1s.html
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/47407
Scores
EPSS
0.0399
EPSS Percentile
89.4%
Details
CWE
CWE-310
Status
published
Products (2)
cisco/ios
15.0
cisco/ios
15.1
Published
Apr 14, 2011
Tracked Since
Feb 18, 2026