Vulnerability Description
Enterasys Vertical Horizon VH-2402S before firmware 2.05.05.09 does not properly restrict certain debugging commands to the ADMIN account, which could allow attackers to obtain sensitive information or modify the registry.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Enterasys | Vertical Horizon-2402S | 2.05.00 |
References
- http://secunia.com/advisories/15757PatchVendor Advisory
- http://www.enterasys.com/support/relnotes/VH-4802-2050509-patch-rel.pdfPatchVendor Advisory
- http://secunia.com/advisories/15757PatchVendor Advisory
- http://www.enterasys.com/support/relnotes/VH-4802-2050509-patch-rel.pdfPatchVendor Advisory
FAQ
What is CVE-2005-2027?
CVE-2005-2027 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Enterasys Vertical Horizon VH-2402S before firmware 2.05.05.09 does not properly restrict certain debugging commands to the ADMIN account, which could allow attackers to obtain sensitive information o...
How severe is CVE-2005-2027?
CVE-2005-2027 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-2027?
Check the references section above for vendor advisories and patch information. Affected products include: Enterasys Vertical Horizon-2402S.