CVE-2001-0444: Low severity Cisco CBOS vulnerability
Published Jul 2, 2001
·Updated
Cisco CBOS 2.3.0.053 sends output of the "sh nat" (aka "show nat") command to the terminal of the next user who attempts to connect to the router via telnet, which could allow that user to obtain sensitive information.
Affected Software
2 affected components
Cisco CBOS=2.3.053
Cisco CBOS=2.4.1
Event History
Jul 2, 2001
CVE Published
04:00 AM
Mar 9, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0444?
CVE-2001-0444 is classified as a moderate severity vulnerability due to the potential exposure of sensitive information.
2
How do I fix CVE-2001-0444?
To fix CVE-2001-0444, upgrade Cisco CBOS to version 2.4.1 or apply any patches released by Cisco for the affected versions.
3
What software versions are affected by CVE-2001-0444?
CVE-2001-0444 affects Cisco CBOS versions 2.3.053 and 2.4.1.
4
What type of information could be exposed by CVE-2001-0444?
CVE-2001-0444 could expose sensitive network address translation (NAT) information to the next user connecting via telnet.
5
Is CVE-2001-0444 exploitable remotely?
Yes, CVE-2001-0444 can be exploited remotely by any user who connects to the affected router via telnet.