CVE-2000-0945: Critical severity cisco catalyst 3500 xl vulnerability
The web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands without authentication when the enable password is not set, via a URL containing the /exec/ directory.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0945?
CVE-2000-0945 is considered a high severity vulnerability as it allows unauthorized remote command execution.
How do I fix CVE-2000-0945?
To fix CVE-2000-0945, set the enable password on the Catalyst 3500 XL switch to restrict unauthorized access.
What type of devices are affected by CVE-2000-0945?
CVE-2000-0945 affects Cisco Catalyst 3500 XL switches that have the web configuration interface enabled.
Can CVE-2000-0945 be exploited without physical access?
Yes, CVE-2000-0945 can be exploited remotely without physical access to the device.
What impact does CVE-2000-0945 have on network security?
CVE-2000-0945 significantly compromises network security by allowing attackers to execute arbitrary commands on affected switches.