Cisco Network Services (CNS) NetFlow Collection Engine (NFC) before 6.0 has an nfcuser account with the default password nfcuser, which allows remote attackers to modify the product configuration and, when installed on Linux, obtain login access to the host operating system.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:30
Type | Values Removed | Values Added |
---|---|---|
References | () http://securitytracker.com/id?1017960 - | |
References | () http://www.cisco.com/en/US/products/products_security_advisory09186a008082c520.shtml - Vendor Advisory | |
References | () http://www.kb.cert.org/vuls/id/127545 - US Government Resource | |
References | () http://www.osvdb.org/35524 - | |
References | () http://www.securityfocus.com/bid/23647 - | |
References | () http://www.vupen.com/english/advisories/2007/1545 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/33861 - |
Information
Published : 2007-04-26 19:19
Updated : 2024-11-21 00:30
NVD link : CVE-2007-2282
Mitre link : CVE-2007-2282
CVE.ORG link : CVE-2007-2282
JSON object : View
Products Affected
cisco
- netflow_collection_engine
CWE