MEDIUM · 6.8

CVE-2013-5522

Cisco IOS on Catalyst 3750X switches has default Service Module credentials, which makes it easier for local users to gain privileges via a Service Module login, aka Bug ID CSCue92286.

Vulnerability Description

Cisco IOS on Catalyst 3750X switches has default Service Module credentials, which makes it easier for local users to gain privileges via a Service Module login, aka Bug ID CSCue92286.

CVSS Score

6.8

MEDIUM

AV:L/AC:L/Au:S/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
CiscoIos-
CiscoCatalyst 3750-XAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-5522?

CVE-2013-5522 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Cisco IOS on Catalyst 3750X switches has default Service Module credentials, which makes it easier for local users to gain privileges via a Service Module login, aka Bug ID CSCue92286.

How severe is CVE-2013-5522?

CVE-2013-5522 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-5522?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Ios, Cisco Catalyst 3750-X.