CVE-2002-1558

3 documents3 sources
Severity
10.0CRITICAL
EPSS
0.9%
top 23.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 31
Latest updateApr 30

Description

Cisco ONS15454 and ONS15327 running ONS before 3.4 have an account for the VxWorks Operating System in the TCC, TCC+ and XTC that cannot be changed or disabled, which allows remote attackers to gain privileges by connecting to the account via Telnet.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-xf47-834w-q9wp: Cisco ONS15454 and ONS15327 running ONS before 32022-04-30
CVEList
CVE-2002-1558: Cisco ONS15454 and ONS15327 running ONS before 32003-03-18
CVE-2002-1558 (CRITICAL CVSS 10) | Cisco ONS15454 and ONS15327 running | cvebase.io