CVE-1999-1000: Medium severity cisco cache engine vulnerability
The web administration interface for Cisco Cache Engine allows remote attackers to view performance statistics.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable the web administration interface if not required; otherwise configure it so remote administration is restricted to trusted management networks or local console access only.
Cisco Cache Engine 550 web administration interface remote_administration = disabled or restricted to management network - Compensating control
Restrict access to the device's web administration interface using network controls (firewall rules/ACLs) to allow only trusted management IP addresses, place the device on a dedicated management network, or require access via VPN.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1000?
CVE-1999-1000 is classified as a medium severity vulnerability.
How do I fix CVE-1999-1000?
To fix CVE-1999-1000, ensure that the web administration interface is secured and not exposed to unauthorized access.
What type of attack can exploit CVE-1999-1000?
CVE-1999-1000 can be exploited by remote attackers to view performance statistics without authentication.
Which software is affected by CVE-1999-1000?
CVE-1999-1000 affects Cisco Cache Engine version 2.
Is there a patch available for CVE-1999-1000?
There is no specific patch for CVE-1999-1000, but applying network segmentation can help mitigate exposure.