Cisco CBOS 2.3.8 and earlier stores the passwords for (1) exec and (2) enable in cleartext in the NVRAM and a configuration file, which could allow unauthorized users to obtain the passwords and gain privileges.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cbos | Cisco | * | 2.3.8 (including) |