Vulnerability Description
Cisco CBOS 2.3.0.053 sends output of the "sh nat" (aka "show nat") command to the terminal of the next user who attempts to connect to the router via telnet, which could allow that user to obtain sensitive information.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Cbos | 2.3.053 |
References
- http://archives.neohapsis.com/archives/bugtraq/2001-04/0380.htmlExploitVendor Advisory
- http://www.osvdb.org/1796
- http://www.securityfocus.com/bid/2635ExploitVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6453
- http://archives.neohapsis.com/archives/bugtraq/2001-04/0380.htmlExploitVendor Advisory
- http://www.osvdb.org/1796
- http://www.securityfocus.com/bid/2635ExploitVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6453
FAQ
What is CVE-2001-0444?
CVE-2001-0444 is a vulnerability with a CVSS score of 2.1 (LOW). Cisco CBOS 2.3.0.053 sends output of the "sh nat" (aka "show nat") command to the terminal of the next user who attempts to connect to the router via telnet, which could allow that user to obtain sens...
How severe is CVE-2001-0444?
CVE-2001-0444 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0444?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Cbos.