CVE Vulnerabilities

CVE-2002-1558

Published: Mar 31, 2003 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Cisco ONS15454 and ONS15327 running ONS before 3.4 have an account for the VxWorks Operating System in the TCC, TCC+ and XTC that cannot be changed or disabled, which allows remote attackers to gain privileges by connecting to the account via Telnet.

Affected Software

Name Vendor Start Version End Version
Optical_networking_systems_software Cisco 3.0 (including) 3.0 (including)
Optical_networking_systems_software Cisco 3.1.0 (including) 3.1.0 (including)
Optical_networking_systems_software Cisco 3.2 (including) 3.2 (including)
Optical_networking_systems_software Cisco 3.2.0 (including) 3.2.0 (including)
Optical_networking_systems_software Cisco 3.3.0 (including) 3.3.0 (including)

References