First published: Fri Oct 12 2001(Updated: )
Cisco CBOS 2.3.8 and earlier stores the passwords for (1) exec and (2) enable in cleartext in the NVRAM and a configuration file, which could allow unauthorized users to obtain the passwords and gain privileges.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco CBOS | <=2.3.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0753 is considered a high severity vulnerability due to the exposure of cleartext passwords in NVRAM.
To mitigate CVE-2001-0753, upgrade to a version of Cisco CBOS later than 2.3.8 where passwords are stored securely.
CVE-2001-0753 affects Cisco CBOS versions 2.3.8 and earlier.
The risks of CVE-2001-0753 include unauthorized access to device configurations and gaining elevated privileges.
Yes, if exploited, CVE-2001-0753 can lead to significant security breaches due to the exposure of sensitive credentials.