Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IOS 12.2(52)SE and 12.2(52)SE1 on Cisco Industrial Ethernet (IE) 3000 series switches has (1) a community name of public for RO access and (2) a community name of private for RW access, which makes it easier for remote attackers to modify the configuration or obtain potentially sensitive information via SNMP requests, aka Bug ID CSCtf25589.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco Industrial Ethernet 3000系列交换机硬编码SNMP团体名漏洞
Vulnerability Description
Cisco Industrial Ethernet 3000系列是交换机产品家族,可为严酷环境提供强健的且简单易用的安全基础架构。 运行Cisco IOS Software 12.2(52)SE或12.2(52)SE1版本的Cisco Industrial Ethernet 3000系列交换机中存在硬编码的SNMP团体名snmp-server community public RO和snmp-server community private RW,远程用户可以利用上述凭据登录获得对设备的完全控制。
CVSS Information
N/A
Vulnerability Type
N/A