CVE Vulnerabilities

CVE-2007-2282

Published: Apr 26, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Cisco Network Services (CNS) NetFlow Collection Engine (NFC) before 6.0 has an nfcuser account with the default password nfcuser, which allows remote attackers to modify the product configuration and, when installed on Linux, obtain login access to the host operating system.

Affected Software

Name Vendor Start Version End Version
Netflow_collection_engine Cisco 1.0 (including) 1.0 (including)
Netflow_collection_engine Cisco 2.0 (including) 2.0 (including)
Netflow_collection_engine Cisco 3.0 (including) 3.0 (including)
Netflow_collection_engine Cisco 3.5 (including) 3.5 (including)
Netflow_collection_engine Cisco 3.6 (including) 3.6 (including)
Netflow_collection_engine Cisco 4.0 (including) 4.0 (including)
Netflow_collection_engine Cisco 5.0 (including) 5.0 (including)
Netflow_collection_engine Cisco 5.0.3 (including) 5.0.3 (including)

References