Vulnerability Description
The Cisco Web Management interface in routers running CBOS 2.4.1 and earlier does not log invalid logins, which allows remote attackers to guess passwords without detection.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Broadband Operating System | <= 2.4.1 |
References
- http://www.cisco.com/warp/public/707/CBOS-multiple.shtmlVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5628
- http://www.cisco.com/warp/public/707/CBOS-multiple.shtmlVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5628
FAQ
What is CVE-2001-0056?
CVE-2001-0056 is a vulnerability with a CVSS score of 7.5 (HIGH). The Cisco Web Management interface in routers running CBOS 2.4.1 and earlier does not log invalid logins, which allows remote attackers to guess passwords without detection.
How severe is CVE-2001-0056?
CVE-2001-0056 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0056?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Broadband Operating System.