Vulnerability Description
Cisco Application Velocity System (AVS) before 5.1.0 is installed with default passwords for some system accounts, which allows remote attackers to gain privileges.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Application Velocity System 3110 | All versions |
| Cisco | Application Velocity System 3120 | All versions |
| Cisco | Application Velocity System 3180 | All versions |
| Cisco | Application Velocity System 3180A | All versions |
| Cisco | Application Velocity System | <= 5.0.1 |
Related Weaknesses (CWE)
References
- http://www.cisco.com/warp/public/707/cisco-sa-20080123-avs.shtml
- http://www.securityfocus.com/bid/27421
- http://www.securitytracker.com/id?1019259
- http://www.vupen.com/english/advisories/2008/0260
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39860
- http://www.cisco.com/warp/public/707/cisco-sa-20080123-avs.shtml
- http://www.securityfocus.com/bid/27421
- http://www.securitytracker.com/id?1019259
- http://www.vupen.com/english/advisories/2008/0260
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39860
FAQ
What is CVE-2008-0029?
CVE-2008-0029 is a vulnerability with a CVSS score of 10.0 (HIGH). Cisco Application Velocity System (AVS) before 5.1.0 is installed with default passwords for some system accounts, which allows remote attackers to gain privileges.
How severe is CVE-2008-0029?
CVE-2008-0029 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-0029?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Application Velocity System 3110, Cisco Application Velocity System 3120, Cisco Application Velocity System 3180, Cisco Application Velocity System 3180A, Cisco Application Velocity System.