CVE-2000-0945

The web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands without authentication when the enable password is not set, via a URL containing the /exec/ directory.
Configurations

Configuration 1 (hide)

cpe:2.3:h:cisco:catalyst_3500_xl:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:33

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2000-10/0380.html - Vendor Advisory () http://archives.neohapsis.com/archives/bugtraq/2000-10/0380.html - Vendor Advisory
References () http://archives.neohapsis.com/archives/bugtraq/2000-11/0194.html - () http://archives.neohapsis.com/archives/bugtraq/2000-11/0194.html -
References () http://www.osvdb.org/444 - () http://www.osvdb.org/444 -
References () http://www.securityfocus.com/bid/1846 - Patch, Vendor Advisory () http://www.securityfocus.com/bid/1846 - Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/5415 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/5415 -

Information

Published : 2000-12-19 05:00

Updated : 2025-04-03 01:03


NVD link : CVE-2000-0945

Mitre link : CVE-2000-0945

CVE.ORG link : CVE-2000-0945


JSON object : View

Products Affected

cisco

  • catalyst_3500_xl