Cisco View-based Access Control MIB SNMP Walk读写密码泄露漏洞

漏洞信息详情

Cisco View-based Access Control MIB SNMP Walk读写密码泄露漏洞

漏洞简介

Catalyst Operating Software (CatOS) 5.5版本和6.1版本以及IOS 12.0版本和12.1版本的Cisco VACM (View-based Access Control MIB)存在漏洞。远程攻击者可以借助读写社区字符串来读取和修改设备配置。

漏洞公告

Fixes available:
Cisco IOS 12.0 SC

  • Cisco IOS 12.0(15)SC

Cisco IOS 12.0 SL

  • Cisco IOS 12.0(15)SL
  • Cisco IOS 12.1(5c)E8

Cisco IOS 12.0 ST

  • Cisco IOS 12.0(15)ST

Cisco IOS 12.0 XS

  • Cisco IOS 12.1(5c)E8

Cisco IOS 12.0 XV

  • Cisco IOS 12.1(5)T5
  • Cisco IOS 12.1WC

Cisco IOS 12.0 XR

  • Cisco IOS 12.1(5)T5

Cisco IOS 12.0 XE

  • Cisco IOS 12.0(4)XH5
  • Cisco IOS 12.1(5c)E8

Cisco IOS 12.0 S

Cisco IOS 12.0 XH

  • Cisco IOS 12.0(4)XH5

Cisco IOS 12.0 DC

  • Cisco IOS 12.1(4)DC2
  • Cisco IOS 12.1(5)DC

Cisco IOS 12.0 T

  • Cisco IOS 12.1(7)

Cisco IOS 12.0 DA

  • Cisco IOS 12.1(5)DA1

Cisco IOS 12.0 XL

  • Cisco IOS 12.1(5)T5

Cisco IOS 12.0 DB

  • Cisco IOS 12.1(4)DB1
  • Cisco IOS 12.1(4)DC2

Cisco IOS 12.1 XR

  • Cisco IOS 12.1(5)XR1

Cisco IOS 12.1 XQ

  • Cisco IOS 12.1(3)XQ3

Cisco IOS 12.1 EX

  • Cisco IOS 12.1(5c)EX

Cisco IOS 12.1 XI

  • Cisco IOS 12.1(3a)XI6

Cisco IOS 12.1 XS

  • Cisco IOS 12.1(5)XS

Cisco IOS 12.1 XV

  • Cisco IOS 12.1(5)XV1

Cisco IOS 12.1 XW

  • Cisco IOS 12.1(5)XW2

Cisco IOS 12.1 YD

  • Cisco IOS 12.1(5)YD

Cisco IOS 12.1 XX

  • Cisco IOS 12.1(5)XX3

Cisco IOS 12.1 XZ

  • Cisco IOS 12.1(5)XZ2

Cisco IOS 12.1 XM

  • Cisco IOS 12.1(5)XM1

Cisco IOS 12.1 AA

  • Cisco IOS 12.1(7)AA

Cisco IOS 12.1 XU

  • Cisco IOS 12.1(5)XU1

Cisco IOS 12.1 DA

  • Cisco IOS 12.1(6)DA

Cisco IOS 12.1 XY

  • Cisco IOS 12.1(5)XY4

Cisco IOS 12.1 XL

  • Cisco IOS 12.1(3)XL1

Cisco IOS 12.1 XT

  • Cisco IOS 12.1(3)XT2

Cisco IOS 12.1 EC

  • Cisco IOS 12.1(6)EC

Cisco IOS 12.1 YC

  • Cisco IOS 12.1(5)YC

Cisco IOS 12.1 E

  • Cisco IOS 12.1(6)E

Cisco IOS 12.1 CX

  • Cisco IOS 12.1(4)CX

Cisco IOS 12.1 YA

  • Cisco IOS 12.1(5)YA1

Cisco IOS 12.1 YB

  • Cisco IOS 12.1(5)YB

Cisco IOS 12.1 DB

  • Cisco IOS 12.1(5)DB

Cisco IOS 12.1 XG

  • Cisco IOS 12.1(3)XG4

Cisco IOS 12.1 XF

  • Cisco IOS 12.1(2)XF3

Cisco IOS 12.1 XH

  • Cisco IOS 12.1(2)XH5

Cisco IOS 12.1 XP

  • Cisco IOS 12.1(3)XP3

Cisco CatOS 5.5

  • Cisco CatOS 5.5(3)

Cisco CatOS 6.1

  • Cisco CatOS 6.1(2)

参考网址

来源:US-CERT Vulnerability Note: VU#645400
名称: VU#645400
链接:http://www.kb.cert.org/vuls/id/645400

来源: BID
名称: 5030
链接:http://www.securityfocus.com/bid/5030

来源: CISCO
名称: 20041008 Cisco IOS Software Multiple SNMP Community String Vulnerabilities
链接:http://www.cisco.com/warp/public/707/ios-snmp-community-vulns-pub.shtml

来源: XF
名称: cisco-snmp-vacm(6179)
链接:http://xforce.iss.net/xforce/xfdb/6179

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享