Vulnerability CVE-2004-0308


Published: 2004-11-24   Modified: 2012-02-12

Description:
Unknown vulnerability in Cisco ONS 15327 before 4.1(3), ONS 15454 before 4.6(1), ONS 15454 SD before 4.1(3), and Cisco ONS15600 before 1.3(0) allows a superuser whose account is locked out, disabled, or suspended to gain unauthorized access via a Telnet connection to the VxWorks shell.

Type:

CWE-Other

CVSS2 => (AV:N/AC:L/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
10/10
10/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete
Affected software
Cisco -> Ons 15327 
Cisco -> Ons 15454 optical transport platform 
Cisco -> Ons 15454sdh 
Cisco -> Ons 15600 
Cisco -> Optical networking systems software 

 References:
http://www.cisco.com/warp/public/707/cisco-sa-20040219-ONS.shtml
http://www.securityfocus.com/bid/9699
https://exchange.xforce.ibmcloud.com/vulnerabilities/15266

Copyright 2024, cxsecurity.com

 

Back to Top