A vulnerability in the dragonite debugger of Cisco IOS XE Software could allow an authenticated, local attacker to escalate from privilege level 15 to root privilege. The vulnerability is due to the presence of development testing and verification scripts that remained on the device. An attacker could exploit this vulnerability by bypassing the consent token mechanism with the residual scripts on the affected device. A successful exploit could allow the attacker to escalate from privilege level 15 to root privilege.
The product is deployed to unauthorized actors with debugging code still enabled or active, which can create unintended entry points or expose sensitive information.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ios | Cisco | 12.2(6)i1 (including) | 12.2(6)i1 (including) |
Ios | Cisco | 15.0(2)se13a (including) | 15.0(2)se13a (including) |
Ios | Cisco | 15.1(3)svr1 (including) | 15.1(3)svr1 (including) |
Ios | Cisco | 15.1(3)svr2 (including) | 15.1(3)svr2 (including) |
Ios | Cisco | 15.1(3)svr3 (including) | 15.1(3)svr3 (including) |
Ios | Cisco | 15.1(3)svs (including) | 15.1(3)svs (including) |
Ios | Cisco | 15.1(3)svs1 (including) | 15.1(3)svs1 (including) |
Ios | Cisco | 15.2(4)ea10 (including) | 15.2(4)ea10 (including) |
Ios | Cisco | 15.2(5)e (including) | 15.2(5)e (including) |
Ios | Cisco | 15.2(5)e1 (including) | 15.2(5)e1 (including) |
Ios | Cisco | 15.2(5)e2 (including) | 15.2(5)e2 (including) |
Ios | Cisco | 15.2(5)e2b (including) | 15.2(5)e2b (including) |
Ios | Cisco | 15.2(5)e2c (including) | 15.2(5)e2c (including) |
Ios | Cisco | 15.2(5)ea (including) | 15.2(5)ea (including) |
Ios | Cisco | 15.2(5)ex (including) | 15.2(5)ex (including) |
Ios | Cisco | 15.2(5a)e (including) | 15.2(5a)e (including) |
Ios | Cisco | 15.2(5a)e1 (including) | 15.2(5a)e1 (including) |
Ios | Cisco | 15.2(5b)e (including) | 15.2(5b)e (including) |
Ios | Cisco | 15.2(5c)e (including) | 15.2(5c)e (including) |
Ios | Cisco | 15.2(6)e (including) | 15.2(6)e (including) |
Ios | Cisco | 15.2(6)e0a (including) | 15.2(6)e0a (including) |
Ios | Cisco | 15.2(6)e0c (including) | 15.2(6)e0c (including) |
Ios | Cisco | 15.2(6)e1 (including) | 15.2(6)e1 (including) |
Ios | Cisco | 15.2(6)e1a (including) | 15.2(6)e1a (including) |
Ios | Cisco | 15.2(6)e1s (including) | 15.2(6)e1s (including) |
Ios | Cisco | 15.2(6)e2 (including) | 15.2(6)e2 (including) |
Ios | Cisco | 15.2(6)e2a (including) | 15.2(6)e2a (including) |
Ios | Cisco | 15.2(6)e2b (including) | 15.2(6)e2b (including) |
Ios | Cisco | 15.2(6)e3 (including) | 15.2(6)e3 (including) |
Ios | Cisco | 15.2(6)eb (including) | 15.2(6)eb (including) |
Ios | Cisco | 15.2(7)e (including) | 15.2(7)e (including) |
Ios | Cisco | 15.2(7)e0a (including) | 15.2(7)e0a (including) |
Ios | Cisco | 15.2(7)e0b (including) | 15.2(7)e0b (including) |
Ios | Cisco | 15.2(7)e0s (including) | 15.2(7)e0s (including) |
Ios | Cisco | 15.2(7)e1 (including) | 15.2(7)e1 (including) |
Ios | Cisco | 15.2(7)e1a (including) | 15.2(7)e1a (including) |
Ios | Cisco | 15.2(7)e2 (including) | 15.2(7)e2 (including) |
Ios | Cisco | 15.2(7)e2a (including) | 15.2(7)e2a (including) |
Ios | Cisco | 15.2(7)e2b (including) | 15.2(7)e2b (including) |
Ios | Cisco | 15.2(7)e3 (including) | 15.2(7)e3 (including) |
Ios | Cisco | 15.2(7)e3k (including) | 15.2(7)e3k (including) |
Ios | Cisco | 15.2(7a)e0b (including) | 15.2(7a)e0b (including) |
Ios | Cisco | 15.2(7b)e0b (including) | 15.2(7b)e0b (including) |
Ios | Cisco | 15.3(3)jf13 (including) | 15.3(3)jf13 (including) |
Ios_xe | Cisco | 3.9.0e (including) | 3.9.0e (including) |
Ios_xe | Cisco | 3.9.1e (including) | 3.9.1e (including) |
Ios_xe | Cisco | 3.9.2be (including) | 3.9.2be (including) |
Ios_xe | Cisco | 3.9.2e (including) | 3.9.2e (including) |
Ios_xe | Cisco | 3.10.0ce (including) | 3.10.0ce (including) |
Ios_xe | Cisco | 3.10.0e (including) | 3.10.0e (including) |
Ios_xe | Cisco | 3.10.1ae (including) | 3.10.1ae (including) |
Ios_xe | Cisco | 3.10.1e (including) | 3.10.1e (including) |
Ios_xe | Cisco | 3.10.1se (including) | 3.10.1se (including) |
Ios_xe | Cisco | 3.10.2e (including) | 3.10.2e (including) |
Ios_xe | Cisco | 3.10.3e (including) | 3.10.3e (including) |
Ios_xe | Cisco | 3.11.0e (including) | 3.11.0e (including) |
Ios_xe | Cisco | 3.11.1ae (including) | 3.11.1ae (including) |
Ios_xe | Cisco | 3.11.1e (including) | 3.11.1e (including) |
Ios_xe | Cisco | 3.11.2ae (including) | 3.11.2ae (including) |
Ios_xe | Cisco | 3.11.2e (including) | 3.11.2e (including) |
Ios_xe | Cisco | 3.11.3ae (including) | 3.11.3ae (including) |
Ios_xe | Cisco | 3.11.3e (including) | 3.11.3e (including) |
Ios_xe | Cisco | 16.8.1 (including) | 16.8.1 (including) |
Ios_xe | Cisco | 16.8.1a (including) | 16.8.1a (including) |
Ios_xe | Cisco | 16.8.1b (including) | 16.8.1b (including) |
Ios_xe | Cisco | 16.8.1c (including) | 16.8.1c (including) |
Ios_xe | Cisco | 16.8.1d (including) | 16.8.1d (including) |
Ios_xe | Cisco | 16.8.1e (including) | 16.8.1e (including) |
Ios_xe | Cisco | 16.8.1s (including) | 16.8.1s (including) |
Ios_xe | Cisco | 16.8.2 (including) | 16.8.2 (including) |
Ios_xe | Cisco | 16.8.3 (including) | 16.8.3 (including) |
Ios_xe | Cisco | 16.9.1 (including) | 16.9.1 (including) |
Ios_xe | Cisco | 16.9.1a (including) | 16.9.1a (including) |
Ios_xe | Cisco | 16.9.1b (including) | 16.9.1b (including) |
Ios_xe | Cisco | 16.9.1c (including) | 16.9.1c (including) |
Ios_xe | Cisco | 16.9.1d (including) | 16.9.1d (including) |
Ios_xe | Cisco | 16.9.1s (including) | 16.9.1s (including) |
Ios_xe | Cisco | 16.9.2 (including) | 16.9.2 (including) |
Ios_xe | Cisco | 16.9.2a (including) | 16.9.2a (including) |
Ios_xe | Cisco | 16.9.2s (including) | 16.9.2s (including) |
Ios_xe | Cisco | 16.9.3 (including) | 16.9.3 (including) |
Ios_xe | Cisco | 16.9.3a (including) | 16.9.3a (including) |
Ios_xe | Cisco | 16.9.3h (including) | 16.9.3h (including) |
Ios_xe | Cisco | 16.9.3s (including) | 16.9.3s (including) |
Ios_xe | Cisco | 16.9.4 (including) | 16.9.4 (including) |
Ios_xe | Cisco | 16.9.4c (including) | 16.9.4c (including) |
Ios_xe | Cisco | 16.9.5 (including) | 16.9.5 (including) |
Ios_xe | Cisco | 16.9.5f (including) | 16.9.5f (including) |
Ios_xe | Cisco | 16.9.6 (including) | 16.9.6 (including) |
Ios_xe | Cisco | 16.10.1 (including) | 16.10.1 (including) |
Ios_xe | Cisco | 16.10.1a (including) | 16.10.1a (including) |
Ios_xe | Cisco | 16.10.1b (including) | 16.10.1b (including) |
Ios_xe | Cisco | 16.10.1c (including) | 16.10.1c (including) |
Ios_xe | Cisco | 16.10.1d (including) | 16.10.1d (including) |
Ios_xe | Cisco | 16.10.1e (including) | 16.10.1e (including) |
Ios_xe | Cisco | 16.10.1f (including) | 16.10.1f (including) |
Ios_xe | Cisco | 16.10.1g (including) | 16.10.1g (including) |
Ios_xe | Cisco | 16.10.1s (including) | 16.10.1s (including) |
Ios_xe | Cisco | 16.10.2 (including) | 16.10.2 (including) |
Ios_xe | Cisco | 16.10.3 (including) | 16.10.3 (including) |
Ios_xe | Cisco | 16.11.1 (including) | 16.11.1 (including) |
Ios_xe | Cisco | 16.11.1a (including) | 16.11.1a (including) |
Ios_xe | Cisco | 16.11.1b (including) | 16.11.1b (including) |
Ios_xe | Cisco | 16.11.1c (including) | 16.11.1c (including) |
Ios_xe | Cisco | 16.11.1s (including) | 16.11.1s (including) |
Ios_xe | Cisco | 16.11.2 (including) | 16.11.2 (including) |
Ios_xe | Cisco | 16.12.1 (including) | 16.12.1 (including) |
Ios_xe | Cisco | 16.12.1a (including) | 16.12.1a (including) |
Ios_xe | Cisco | 16.12.1c (including) | 16.12.1c (including) |
Ios_xe | Cisco | 16.12.1s (including) | 16.12.1s (including) |
Ios_xe | Cisco | 16.12.1t (including) | 16.12.1t (including) |
Ios_xe | Cisco | 16.12.1w (including) | 16.12.1w (including) |
Ios_xe | Cisco | 16.12.1x (including) | 16.12.1x (including) |
Ios_xe | Cisco | 16.12.1y (including) | 16.12.1y (including) |
Ios_xe | Cisco | 16.12.1z (including) | 16.12.1z (including) |
Ios_xe | Cisco | 16.12.1za (including) | 16.12.1za (including) |
Ios_xe | Cisco | 16.12.2 (including) | 16.12.2 (including) |
Ios_xe | Cisco | 16.12.2a (including) | 16.12.2a (including) |
Ios_xe | Cisco | 16.12.2s (including) | 16.12.2s (including) |
Ios_xe | Cisco | 16.12.2t (including) | 16.12.2t (including) |
Ios_xe | Cisco | 16.12.3 (including) | 16.12.3 (including) |
Ios_xe | Cisco | 16.12.3a (including) | 16.12.3a (including) |
Ios_xe | Cisco | 16.12.3s (including) | 16.12.3s (including) |
Ios_xe | Cisco | 17.1.1 (including) | 17.1.1 (including) |
Ios_xe | Cisco | 17.1.1a (including) | 17.1.1a (including) |
Ios_xe | Cisco | 17.1.1s (including) | 17.1.1s (including) |
Ios_xe | Cisco | 17.1.1t (including) | 17.1.1t (including) |
Ios_xe | Cisco | 17.1.2 (including) | 17.1.2 (including) |
Ios_xe | Cisco | 17.2.1 (including) | 17.2.1 (including) |
Ios_xe | Cisco | 17.2.1a (including) | 17.2.1a (including) |
Ios_xe | Cisco | 17.2.1r (including) | 17.2.1r (including) |
Ios_xe | Cisco | 17.2.1v (including) | 17.2.1v (including) |
Ios_xe | Cisco | 17.2.2 (including) | 17.2.2 (including) |
Ios_xe | Cisco | 17.2.3 (including) | 17.2.3 (including) |