Search:     Advanced search
server monitoring

Cisco Catalyst Enable Access Authentication Bypass (CSCea42030)

Article ID: 11547
Last updated: 27 Jan, 2009
Views: 438
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

Cisco Catalyst Enable Access Authentication Bypass (CSCea42030)

This script is (C) 2003-2009 Tenable Network Security, Inc.

FamilyCISCO
Plugin ID11547
Bugtraq ID
CVE IDCVE-2003-0216

Description:


The remote Catalyst is vulnerable to password bypass vulnerability. Basically,
an attacker who has a command line access may gain the enable privileges
without having to know the right password, which would allow him to reconfigure
this host remotely.

This vulnerability is documented with the CISCO bug ID CSCde42030

Solution : http://www.cisco.com/warp/public/707/cisco-sa-20030424-catos.shtml
Risk factor : High

*** As solely relied on the banner of the remote host
*** this might be a false positive
This article was:   Helpful | Not Helpful
Prev   Next
Cisco IOS OSPF Neighbor Announcement Remote Overflow (CSCdp58462)     Cisco TFTP Server Long Filename DoS (CSCdy03429)