The web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands without authentication when the enable password is not set, via a URL containing th…
Info
Summary
The web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands without authentication when the enable password is not set, via a URL containing the /exec/ directory.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0380.html Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2000-11/0194.html
- http://www.osvdb.org/444
- http://www.securityfocus.com/bid/1846 Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5415
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0380.html Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2000-11/0194.html
- http://www.osvdb.org/444
- http://www.securityfocus.com/bid/1846 Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5415
Timeline
- nvd_ingest NVD