Cisco CNS Network Registrar Default Credentials Authentication Bypass Vulnerability
BID:48076
Info
Cisco CNS Network Registrar Default Credentials Authentication Bypass Vulnerability
| Bugtraq ID: | 48076 |
| Class: | Design Error |
| CVE: |
CVE-2011-2024 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 01 2011 12:00AM |
| Updated: | Jun 01 2011 12:00AM |
| Credit: | Cisco |
| Vulnerable: |
Cisco CNS Network Registrar 7.1 Cisco CNS Network Registrar 7.0 |
| Not Vulnerable: |
Cisco CNS Network Registrar 7.2 |
Discussion
Cisco CNS Network Registrar Default Credentials Authentication Bypass Vulnerability
Cisco CNS Network Registrar is prone to a remote authentication-bypass vulnerability.
An attacker can exploit this issue to gain unauthorized administrative access to the affected device. Successful exploits will result in the complete compromise of the affected device.
This issue is being tracked by Cisco bug ID CSCsm50627.
Cisco CNS Network Registrar is prone to a remote authentication-bypass vulnerability.
An attacker can exploit this issue to gain unauthorized administrative access to the affected device. Successful exploits will result in the complete compromise of the affected device.
This issue is being tracked by Cisco bug ID CSCsm50627.
Exploit / POC
Cisco CNS Network Registrar Default Credentials Authentication Bypass Vulnerability
Attackers can use readily available tools to exploit this issue.
Attackers can use readily available tools to exploit this issue.
Solution / Fix
Cisco CNS Network Registrar Default Credentials Authentication Bypass Vulnerability
Solution:
The vendor has released an advisory along with fixes. Please see the referenced advisory for details.
Solution:
The vendor has released an advisory along with fixes. Please see the referenced advisory for details.
References
Cisco CNS Network Registrar Default Credentials Authentication Bypass Vulnerability
References:
References: