The username command in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers and Cisco ACE 4710 Application Control Engine Appliance stores a cleartext password by default, which allows context-dependent attackers to obtain sensitive information.
References
Link | Resource |
---|---|
http://www.cisco.com/en/US/products/products_security_advisory09186a0080a7bc82.shtml | Patch Vendor Advisory |
http://www.cisco.com/en/US/products/products_security_advisory09186a0080a7bc82.shtml | Patch Vendor Advisory |
Configurations
History
21 Nov 2024, 01:00
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.cisco.com/en/US/products/products_security_advisory09186a0080a7bc82.shtml - Patch, Vendor Advisory |
Information
Published : 2009-02-26 16:17
Updated : 2024-11-21 01:00
NVD link : CVE-2009-0742
Mitre link : CVE-2009-0742
CVE.ORG link : CVE-2009-0742
JSON object : View
Products Affected
cisco
- ace_4710
- catalyst_7600
- catalyst_6500
- application_control_engine_module
CWE
CWE-310
Cryptographic Issues