ID

VAR-200012-0181


CVE

CVE-2000-0945


TITLE

Catalyst web Configuration interface arbitrary authentication command execution vulnerability

Trust: 0.6

sources: CNNVD: CNNVD-200012-161

DESCRIPTION

The web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands without authentication when the enable password is not set, via a URL containing the /exec/ directory. A vulnerability exists in the webserver configuration interface which will allow an anonymous user to execute commands. A http request which includes /exec and a known filename will reveal the contents of the particular file. In addition to disclosing the contents of files, this vulnerability could allow a user to execute arbitrary code. Catalyst 3500 XL switch web configuration interface has a vulnerability

Trust: 1.26

sources: NVD: CVE-2000-0945 // BID: 1846 // VULHUB: VHN-2515

AFFECTED PRODUCTS

vendor:ciscomodel:catalyst 3500 xlscope:eqversion:*

Trust: 1.0

vendor:ciscomodel:catalyst 3500 xlscope: - version: -

Trust: 0.6

vendor:ciscomodel:catalyst xlscope:eqversion:3500

Trust: 0.3

sources: BID: 1846 // CNNVD: CNNVD-200012-161 // NVD: CVE-2000-0945

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2000-0945
value: HIGH

Trust: 1.0

CNNVD: CNNVD-200012-161
value: CRITICAL

Trust: 0.6

VULHUB: VHN-2515
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2000-0945
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.0

VULHUB: VHN-2515
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-2515 // CNNVD: CNNVD-200012-161 // NVD: CVE-2000-0945

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

sources: NVD: CVE-2000-0945

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200012-161

TYPE

unknown

Trust: 0.6

sources: CNNVD: CNNVD-200012-161

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-2515

EXTERNAL IDS

db:BIDid:1846

Trust: 2.0

db:OSVDBid:444

Trust: 1.7

db:NVDid:CVE-2000-0945

Trust: 1.7

db:CNNVDid:CNNVD-200012-161

Trust: 0.7

db:BUGTRAQid:20001026 ADVISORY DEF-2000-02: CISCO CATALYST REMOTE COMMAND EXECUTION

Trust: 0.6

db:BUGTRAQid:20001113 RE: 3500XL

Trust: 0.6

db:XFid:5415

Trust: 0.6

db:EXPLOIT-DBid:20330

Trust: 0.1

db:SEEBUGid:SSVID-74211

Trust: 0.1

db:VULHUBid:VHN-2515

Trust: 0.1

sources: VULHUB: VHN-2515 // BID: 1846 // CNNVD: CNNVD-200012-161 // NVD: CVE-2000-0945

REFERENCES

url:http://www.securityfocus.com/bid/1846

Trust: 1.7

url:http://archives.neohapsis.com/archives/bugtraq/2000-10/0380.html

Trust: 1.7

url:http://archives.neohapsis.com/archives/bugtraq/2000-11/0194.html

Trust: 1.7

url:http://www.osvdb.org/444

Trust: 1.7

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/5415

Trust: 1.1

url:http://xforce.iss.net/static/5415.php

Trust: 0.6

url:http://www.cisco.com/warp/public/cc/pd/si/casi/ca3500xl/index.shtml

Trust: 0.3

sources: VULHUB: VHN-2515 // BID: 1846 // CNNVD: CNNVD-200012-161 // NVD: CVE-2000-0945

CREDITS

Discovered and posted to Bugtraq by Olle Segerdahl <olle@defcom.com> on Oct 26, 2000.

Trust: 0.3

sources: BID: 1846

SOURCES

db:VULHUBid:VHN-2515
db:BIDid:1846
db:CNNVDid:CNNVD-200012-161
db:NVDid:CVE-2000-0945

LAST UPDATE DATE

2024-08-14T15:04:56.390000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-2515date:2017-10-10T00:00:00
db:BIDid:1846date:2000-10-26T00:00:00
db:CNNVDid:CNNVD-200012-161date:2005-05-02T00:00:00
db:NVDid:CVE-2000-0945date:2017-10-10T01:29:24.030

SOURCES RELEASE DATE

db:VULHUBid:VHN-2515date:2000-12-19T00:00:00
db:BIDid:1846date:2000-10-26T00:00:00
db:CNNVDid:CNNVD-200012-161date:2000-12-19T00:00:00
db:NVDid:CVE-2000-0945date:2000-12-19T05:00:00