CVE-2015-0694: Cisco Asr 9001

Medium severity, CVSS 5.0. EPSS: 1.6% chance of exploitation in the next 30 days.

Cisco ASR 9000 devices with software 5.3.0.BASE do not recognize that certain ACL entries have a single-host constraint, which allows remote attackers to bypass intended network-resource access restrictions by using an address that was not supposed to have been allowed, aka Bug ID CSCur28806.

Affected products

Published 2015-04-11. Last modified 2026-06-17.