CVE-2009-0620
Published Feb 26, 2009
Last updated 16 years ago
Overview
- Description
- Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers before A2(1.1) uses default (1) usernames and (2) passwords for (a) the administrator and (b) web management, which makes it easier for remote attackers to perform configuration changes or obtain operating-system access.
- Source
- ykramarz@cisco.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 10
- Impact score
- 10
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-255
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:cisco:catalyst:6500:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "712DA93A-13CE-4E27-84FC-D2ECEEFFD568" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:cisco:catalyst:7600:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "521A4FD3-18E3-4937-A6AD-F7BDB3DB08ED" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:cisco:application_control_engine_module:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D85B8F79-9113-4AEB-8536-FEFAB06ADF2F", "versionEndIncluding": "0" } ], "operator": "OR" } ], "operator": "AND" } ]