CVE Feed

    Dashboard / CVE / CVE-2022-20944

    CVE-2022-20944

    A vulnerability in the software image verification functionality of Cisco IOS XE Software for Cisco Catalyst 9200 Series Switches could allow an unauthenticated, physical attacker to execute unsigned code at system boot time. This vulnerability is due to an improper check in the code function that manages the verification of the digital signatures of system image files during the initial boot process. An attacker could exploit this vulnerability by loading unsigned software on an affected device. A successful exploit could allow the attacker to boot a malicious software image or execute unsigned code and bypass the image verification check part of the boot process of the affected device. To exploit this vulnerability, the attacker needs either unauthenticated physical access to the device or privileged access to the root shell on the device. Note: In Cisco IOS XE Software releases 16.11.1 and later, root shell access is protected by the Consent Token mechanism. However, an attacker with level-15 privileges could easily downgrade the Cisco IOS XE Software running on a device to a release where root shell access is more readily available.

    Published:Oct 10, 2022
    Last Modified:Nov 21, 2024
    EPS:Oct 10, 2022
    EPSS Score:0.00012
    CVSS Score:6.1

    Affected Products

    Vendor
    Cisco
    Product
    Catalyst 9200
    Vendor
    Cisco
    Product
    Catalyst 9200cx
    Vendor
    Cisco
    Product
    Catalyst 9200l
    Vendor
    Cisco
    Product
    Catalyst C9200-24p
    Vendor
    Cisco
    Product
    Catalyst C9200-24t
    Vendor
    Cisco
    Product
    Catalyst C9200-48p
    Vendor
    Cisco
    Product
    Catalyst C9200-48t
    Vendor
    Cisco
    Product
    Catalyst C9200l-24p-4g
    Vendor
    Cisco
    Product
    Catalyst C9200l-24p-4x
    Vendor
    Cisco
    Product
    Catalyst C9200l-24pxg-2y
    Vendor
    Cisco
    Product
    Catalyst C9200l-24pxg-4x
    Vendor
    Cisco
    Product
    Catalyst C9200l-24t-4g
    Vendor
    Cisco
    Product
    Catalyst C9200l-24t-4x
    Vendor
    Cisco
    Product
    Catalyst C9200l-48p-4g
    Vendor
    Cisco
    Product
    Catalyst C9200l-48p-4x
    Vendor
    Cisco
    Product
    Catalyst C9200l-48pxg-2y
    Vendor
    Cisco
    Product
    Catalyst C9200l-48pxg-4x
    Vendor
    Cisco
    Product
    Catalyst C9200l-48t-4g
    Vendor
    Cisco
    Product
    Catalyst C9200l-48t-4x
    Vendor
    Cisco
    Product
    Ios Xe

    Exploits

    No exploit reference

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High