First published: Mon Dec 11 2000(Updated: )
Buffer overflow in CSAdmin module in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Secure Access Control Server | =2.1 | |
Cisco Secure Access Control Server | =2.3\(3\) | |
Cisco Secure Access Control Server | =2.4\(2\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1054 is classified as a high severity vulnerability due to its potential to allow remote attackers to execute arbitrary commands.
To address CVE-2000-1054, upgrade to a patched version of Cisco Secure ACS Server that is not vulnerable to buffer overflow.
CVE-2000-1054 can lead to a denial of service attack and may allow attackers to gain unauthorized control over the affected system.
CVE-2000-1054 affects Cisco Secure ACS Server versions 2.1, 2.3(3), and 2.4(2) or earlier.
Yes, CVE-2000-1054 can be exploited remotely by sending a specially crafted large packet to the CSAdmin module.