CVE-2011-1645
Summary
| CVE | CVE-2011-1645 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2011-05-31 20:55:00 UTC |
| Updated | 2011-09-07 03:16:00 UTC |
| Description | The web management interface on the Cisco RVS4000 Gigabit Security Router with software 1.x before 1.3.3.4 and 2.x before 2.0.2.7, and the WRVS4400N Gigabit Security Router with software before 2.0.2.1, allows remote attackers to read the backup configuration file, and consequently execute arbitrary code, via unspecified vectors, aka Bug ID CSCtn23871. |
Risk And Classification
Problem Types: CWE-16
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Cisco | Rvs4000 | 1 | All | All | All |
| Hardware | Cisco | Rvs4000 | 2 | All | All | All |
| Hardware | Cisco | Rvs4000 | 1 | All | All | All |
| Hardware | Cisco | Rvs4000 | 2 | All | All | All |
| Application | Cisco | Rvs4000 Software | 1.3.0.5 | All | All | All |
| Application | Cisco | Rvs4000 Software | 1.3.1.0 | All | All | All |
| Application | Cisco | Rvs4000 Software | 1.3.2.0 | All | All | All |
| Application | Cisco | Rvs4000 Software | 2.0.0.3 | All | All | All |
| Application | Cisco | Rvs4000 Software | 1.3.0.5 | All | All | All |
| Application | Cisco | Rvs4000 Software | 1.3.1.0 | All | All | All |
| Application | Cisco | Rvs4000 Software | 1.3.2.0 | All | All | All |
| Application | Cisco | Rvs4000 Software | 2.0.0.3 | All | All | All |
| Hardware | Cisco | Wrvs4400n | 1.0 | All | All | All |
| Hardware | Cisco | Wrvs4400n | 1.1 | All | All | All |
| Hardware | Cisco | Wrvs4400n | 2 | All | All | All |
| Hardware | Cisco | Wrvs4400n | 1.0 | All | All | All |
| Hardware | Cisco | Wrvs4400n | 1.1 | All | All | All |
| Hardware | Cisco | Wrvs4400n | 2 | All | All | All |
| Application | Cisco | Wrvs4400n Software | 1.3.0.5 | All | All | All |
| Application | Cisco | Wrvs4400n Software | 1.3.1.0 | All | All | All |
| Application | Cisco | Wrvs4400n Software | 1.3.2.0 | All | All | All |
| Application | Cisco | Wrvs4400n Software | 2.0.0.3 | All | All | All |
| Application | Cisco | Wrvs4400n Software | 1.3.0.5 | All | All | All |
| Application | Cisco | Wrvs4400n Software | 1.3.1.0 | All | All | All |
| Application | Cisco | Wrvs4400n Software | 1.3.2.0 | All | All | All |
| Application | Cisco | Wrvs4400n Software | 2.0.0.3 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Cisco Gigabit Security Router Bugs Let Remote Users Obtain Information and Execute Arbitrary Code - SecurityTracker | SECTRACK | www.securitytracker.com | |
| Cisco Systems - Redirect to | CISCO | www.cisco.com | Vendor Advisory |
| Cisco RVS4000/WRVS4400N Web Management Interface Information Disclosure Vulnerability | BID | www.securityfocus.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.