10
CVSSv2

CVE-2010-1574

Published: 08/07/2010 Updated: 17/08/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

IOS 12.2(52)SE and 12.2(52)SE1 on Cisco Industrial Ethernet (IE) 3000 series switches has (1) a community name of public for RO access and (2) a community name of private for RW access, which makes it easier for remote malicious users to modify the configuration or obtain potentially sensitive information via SNMP requests, aka Bug ID CSCtf25589.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 12.2\\(52\\)se1

cisco ios 12.2\\(52\\)se

cisco industrial_ethernet_3000

Vendor Advisories

Cisco Industrial Ethernet 3000 (IE 3000) Series switches running Cisco IOS® Software releases 122(52)SE or 122(52)SE1, contain a vulnerability where well known SNMP community names are hard-coded for both read and write access The hard-coded community names are "public" and "private" Cisco recommends that all administrators deploy t ...