CVE-2020-3209 - Improper Verification of Cryptographic Signature

Severity

68%

Complexity

9%

Confidentiality

98%

A vulnerability in software image verification in Cisco IOS XE Software could allow an unauthenticated, physical attacker to install and boot a malicious software image or execute unsigned binaries on an affected device. The vulnerability is due to an improper check on the area of code that manages the verification of the digital signatures of system image files during the initial boot process. An attacker could exploit this vulnerability by loading unsigned software on an affected device. A successful exploit could allow the attacker to install and boot a malicious software image or execute unsigned binaries on the targeted device.

CVSS 3.1 Base Score 6.8. CVSS Attack Vector: physical. CVSS Attack Complexity: low. CVSS Vector: (CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

CVSS 2.0 Base Score 7.2. CVSS Attack Vector: local. CVSS Attack Complexity: low. CVSS Vector: (AV:L/AC:L/Au:N/C:C/I:C/A:C).

Demo Examples

Improper Verification of Cryptographic Signature

CWE-347

In the following code, a JarFile object is created from a downloaded file.


               
JarFile jf = new JarFile(f);

The JAR file that was potentially downloaded from an untrusted source is created without verifying the signature (if present). An alternate constructor that accepts a boolean verify parameter should be used instead.

Overview

Type

Cisco IOS

First reported 4 years ago

2020-06-03 18:15:00

Last updated 4 years ago

2020-06-10 15:09:00

Affected Software

Cisco IOS XE 3.2.0SG

3.2.0sg

Cisco IOS XE 3.2.1SE

3.2.1se

Cisco IOS XE 3.2.0SG

3.2.1sg

Cisco IOS XE 3.2.2SE

3.2.2se

Cisco IOS XE 3.2.2SG

3.2.2sg

Cisco IOS XE 3.2.3SE

3.2.3se

Cisco IOS XE 3.2.3SG

3.2.3sg

Cisco IOS XE 3.2.4SG

3.2.4sg

Cisco IOS XE 3.2.11SG

3.2.11sg

Cisco IOS XE 3.3.0SE

3.3.0se

Cisco IOS XE 3.3.0SG

3.3.0sg

Cisco IOS XE 3.3.1SE

3.3.1se

Cisco IOS XE 3.3.1SG

3.3.1sg

Cisco IOS XE 3.3.2SG

3.3.2sg

Cisco IOS XE 3.4.0SG

3.4.0sg

Cisco IOS XE 3.4.1SG

3.4.1sg

Cisco IOS XE 3.4.2SG

3.4.2sg

Cisco IOS XE 3.4.3SG

3.4.3sg

Cisco IOS XE 3.4.4SG

3.4.4sg

Cisco IOS XE 3.4.5SG

3.4.5sg

Cisco IOS XE 3.4.6SG

3.4.6sg

Cisco IOS XE 3.4.7SG

3.4.7sg

Cisco IOS XE 3.4.8SG

3.4.8sg

Cisco IOS XE 3.5.0E

3.5.0e

Cisco IOS XE 3.5.1E

3.5.1e

Cisco IOS XE 3.5.2E

3.5.2e

Cisco IOS XE 3.5.4SQ

3.5.4sq

Cisco IOS XE 3.5.5SQ

3.5.5sq

Cisco IOS XE 3.6.5AE

3.6.5ae

Cisco IOS XE 3.6.5BE

3.6.5be

Cisco IOS XE 3.6.5E

3.6.5e

Cisco IOS XE 3.6.6E

3.6.6e

Cisco IOS XE 3.6.7E

3.6.7e

Cisco IOS XE 3.7.0BS

3.7.0bs

Cisco IOS XE 3.7.0s

3.7.0s

Cisco IOS XE 3.7.1s

3.7.1s

Cisco IOS XE 3.7.2s

3.7.2s

Cisco IOS XE 3.7.4AS

3.7.4as

Cisco IOS XE 3.7.5E

3.7.5e

Cisco IOS XE 3.8.0s

3.8.0s

Cisco IOS XE 3.8.1S

3.8.1s

Cisco IOS XE 3.8.2E

3.8.2e

Cisco IOS XE 3.8.2S

3.8.2s

Cisco IOS XE 3.9.0AS

3.9.0as

Cisco IOS XE 3.9.0s

3.9.0s

Cisco IOS XE 3.9.1AS

3.9.1as

Cisco IOS XE 3.9.1s

3.9.1s

Cisco IOS XE 3.9.2E

3.9.2e

Cisco IOS XE 3.9.2S

3.9.2s

Cisco IOS XE 3.10.0S

3.10.0s

Cisco IOS XE 3.10.1S

3.10.1s

Cisco IOS XE 3.10.2S

3.10.2s

Cisco IOS XE 3.10.3S

3.10.3s

Cisco IOS XE 3.10.5S

3.10.5s

Cisco IOS XE 3.10.6S

3.10.6s

Cisco IOS XE 3.10.7S

3.10.7s

Cisco IOS XE 3.11.0S

3.11.0s

Cisco IOS XE 3.11.1S

3.11.1s

Cisco IOS XE 3.11.2S

3.11.2s

Cisco IOS XE 3.12.0AS

3.12.0as

Cisco IOS XE 3.14.0S

3.14.0s

Cisco IOS XE 3.14.1S

3.14.1s

Cisco IOS XE 3.14.2S

3.14.2s

Cisco IOS XE 3.14.3S

3.14.3s

Cisco IOS XE 3.14.4S

3.14.4s

Cisco IOS XE 3.15.1cS

3.15.1cs

Cisco IOS XE 3.15.4S

3.15.4s

Cisco IOS XE 3.16.0cS

3.16.0cs

Cisco IOS XE 3.16.1AS

3.16.1as

Cisco IOS XE 3.16.1S

3.16.1s

Cisco IOS XE 3.16.2BS

3.16.2bs

Cisco IOS XE 3.17.1AS

3.17.1as

Cisco IOS XE 3.17.2S

3.17.2s

Cisco IOS XE 3.18.0AS

3.18.0as

Cisco IOS XE 3.18.0S

3.18.0s

Cisco IOS XE 16.1.1

16.1.1

Cisco IOS XE 16.3.4

16.3.4

Cisco IOS XE 16.4.2

16.4.2

Cisco IOS XE 16.5.1

16.5.1

Cisco IOS XE 16.5.1B

16.5.1b

Cisco IOS XE16.9.1

16.9.1

Cisco IOS XE 16.9.3

16.9.3

Cisco IOS XE 16.11.1

16.11.1

Cisco IOS XE 16.10.1

16.10.1

Cisco IOS XE 3.5.6SQ

3.5.6sq

Cisco IOS XE 3.5.7SQ

3.5.7sq

Cisco IOS XE 3.5.8SQ

3.5.8sq

Cisco IOS XE 3.6.0AE

3.6.0ae

Cisco IOS XE 3.6.0BE

3.6.0be

Cisco IOS XE 3.6.7AE

3.6.7ae

Cisco IOS XE 3.6.7BE

3.6.7be

Cisco IOS XE 3.6.8E

3.6.8e

Cisco IOS XE 3.6.9AE

3.6.9ae

Cisco IOS XE 3.6.9E

3.6.9e

Cisco IOS XE 3.6.10E

3.6.10e

Cisco IOS XE 3.7.2E

3.7.2e

Cisco IOS XE 3.7.8S

3.7.8s

Cisco IOS XE 3.8.5AE

3.8.5ae

Cisco IOS XE 3.8.5E

3.8.5e

Cisco IOS XE 3.8.7E

3.8.7e

Cisco IOS XE 3.8.8E

3.8.8e

Cisco IOS XE 3.8.9E

3.8.9e

Cisco IOS XE 3.9.2BE

3.9.2be

Cisco IOS XE 3.10.0CE

3.10.0ce

Cisco IOS XE 3.10.0E

3.10.0e

Cisco IOS XE 3.10.1AE

3.10.1ae

Cisco IOS XE 3.10.1E

3.10.1e

Cisco IOS XE 3.10.1SE

3.10.1se

Cisco IOS XE 3.10.2AS

3.10.2as

Cisco IOS XE 3.10.2E

3.10.2e

Cisco IOS XE 3.10.3E

3.10.3e

Cisco IOS XE 3.10.10S

3.10.10s

Cisco IOS XE 3.11.0E

3.11.0e

Cisco IOS XE 3.11.1E

3.11.1e

Cisco IOS XE 3.11.3E

3.11.3e

Cisco IOS XE 3.13.3S

3.13.3s

Cisco IOS XE 3.13.6BS

3.13.6bs

Cisco IOS XE 3.13.10S

3.13.10s

Cisco IOS XE 3.16.0AS

3.16.0as

Cisco IOS XE 3.16.0BS

3.16.0bs

Cisco IOS XE 3.16.4CS

3.16.4cs

Cisco IOS XE 3.16.4ES

3.16.4es

Cisco IOS XE 3.16.4GS

3.16.4gs

Cisco IOS XE 3.16.5AS

3.16.5as

Cisco IOS XE 3.16.5BS

3.16.5bs

Cisco IOS XE 3.16.7AS

3.16.7as

Cisco IOS XE 3.16.7BS

3.16.7bs

Cisco IOS XE 3.16.8S

3.16.8s

Cisco IOS XE 3.16.9S

3.16.9s

Cisco IOS XE 3.16.10S

3.16.10s

Cisco IOS XE 3.18.1GSP

3.18.1gsp

Cisco IOS XE 3.18.1HSP

3.18.1hsp

Cisco IOS XE 3.18.1ISP

3.18.1isp

Cisco IOS XE 3.18.3ASP

3.18.3asp

Cisco IOS XE 3.18.3BSP

3.18.3bsp

Cisco IOS XE 3.18.4S

3.18.4s

Cisco IOS XE 3.18.4SP

3.18.4sp

Cisco IOS XE 3.18.5SP

3.18.5sp

Cisco IOS XE 3.18.6SP

3.18.6sp

Cisco IOS XE 3.18.7SP

3.18.7sp

Cisco IOS XE 3.18.8SP

3.18.8sp

Cisco IOS XE 16.3.5

16.3.5

Cisco IOS XE 16.3.7

16.3.7

Cisco IOS XE 16.3.8

16.3.8

Cisco IOS XE 16.4.3

16.4.3

Cisco IOS XE 16.5.2

16.5.2

Cisco IOS XE 16.5.3

16.5.3

Cisco IOS XE 16.6.4

16.6.4

Cisco IOS XE 16.6.4A

16.6.4a

Cisco IOS XE 16.6.4S

16.6.4s

Cisco IOS XE 16.6.5A

16.6.5a

Cisco IOS XE 16.6.5B

16.6.5b

Cisco IOS XE 16.6.6

16.6.6

Cisco IOS XE 16.6.7A

16.6.7a

Cisco IOS XE 16.7.1A

16.7.1a

Cisco IOS XE 16.7.1B

16.7.1b

Cisco IOS XE 16.7.3

16.7.3

Cisco IOS XE 16.7.4

16.7.4

Cisco IOS XE 16.8.1A

16.8.1a

Cisco IOS XE 16.8.1B

16.8.1b

Cisco IOS XE 16.8.1C

16.8.1c

Cisco IOS XE 16.8.1D

16.8.1d

Cisco IOS XE 16.8.1E

16.8.1e

Cisco IOS XE 16.8.1S

16.8.1s

Cisco IOS XE 16.8.2

16.8.2

Cisco IOS XE 16.8.3

16.8.3

Cisco IOS XE 16.9.1A

16.9.1a

Cisco IOS XE 16.9.1B

16.9.1b

Cisco IOS XE 16.9.1C

16.9.1c

Cisco IOS XE 16.9.1D

16.9.1d

Cisco IOS XE 16.9.1S

16.9.1s

Cisco IOS XE 16.9.2

16.9.2

Cisco IOS XE 16.9.2A

16.9.2a

Cisco IOS XE 16.9.2S

16.9.2s

Cisco IOS XE 16.9.3H

16.9.3h

Cisco IOS XE 16.9.3S

16.9.3s

Cisco IOS XE 16.9.4C

16.9.4c

Cisco IOS XE 16.10.1A

16.10.1a

Cisco IOS XE 16.10.1B

16.10.1b

Cisco IOS XE 16.10.1C

16.10.1c

Cisco IOS XE 16.10.1D

16.10.1d

Cisco IOS XE 16.10.1E

16.10.1e

Cisco IOS XE 16.10.1F

16.10.1f

Cisco IOS XE 16.10.1G

16.10.1g

Cisco IOS XE 16.10.1S

16.10.1s

Cisco IOS XE 16.10.2

16.10.2

Cisco IOS XE 16.12.1Y

16.12.1y

Stay updated

ExploitPedia is constantly evolving. Sign up to receive a notification when we release additional functionality.

Get in touch

If you'd like to report a bug or have any suggestions for improvements then please do get in touch with us using this form. We will get back to you as soon as we can.