First published: Wed Feb 28 2001(Updated: )
Cisco IOS 12.0(5)XU through 12.1(2) allows remote attackers to read system administration and topology information via an "snmp-server host" command, which creates a readable "community" community string if one has not been previously created.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =12.0\(16\)sc3 | |
Cisco IOS | =12.1xg | |
Cisco IOS | =12.0\(8\)s1 | |
Cisco IOS | =12.0xc | |
Cisco IOS | =12.0xk | |
Cisco IOS | =12.0xr | |
Cisco IOS | =12.1xm | |
Cisco IOS | =12.1xi | |
Cisco IOS | =12.0\(16.06\)s | |
Cisco IOS | =12.0st | |
Cisco IOS | =12.0\(7\)sc | |
Cisco IOS | =12.0\(5\)t1 | |
Cisco IOS | =12.1e | |
Cisco IOS | =12.1xc | |
Cisco IOS | =12.1xp | |
Cisco IOS | =12.0\(5\)yb4 | |
Cisco IOS | =12.0\(15\)s3 | |
Cisco IOS | =12.0\(13\)wt6\(1\) | |
Cisco IOS | =12.1yd | |
Cisco IOS | =12.0\(9\) | |
Cisco IOS | =12.0dc | |
Cisco IOS | =12.0\(5\)wc3 | |
Cisco IOS | =12.0xq | |
Cisco IOS | =12.1xs | |
Cisco IOS | =12.0xe | |
Cisco IOS | =12.0\(16a\) | |
Cisco IOS | =12.0\(18\)s5 | |
Cisco IOS | =12.0\(16\)st1 | |
Cisco IOS | =12.1xy | |
Cisco IOS | =12.0\(1\)w | |
Cisco IOS | =12.1\(20\)e1 | |
Cisco IOS | =12.0\(5\)xk2 | |
Cisco IOS | =12.0\(9a\) | |
Cisco IOS | =12.0\(4\)xm | |
Cisco IOS | =12.0xd | |
Cisco IOS | =12.0\(17a\) | |
Cisco IOS | =12.0\(8.0.2\)s | |
Cisco IOS | =12.1xz | |
Cisco IOS | =12.0\(7.4\)s | |
Cisco IOS | =12.0xj | |
Cisco IOS | =12.1\(20\)ea1 | |
Cisco IOS | =12.0\(7\)db2 | |
Cisco IOS | =12.1t | |
Cisco IOS | =12.0\(1\)xb | |
Cisco IOS | =12.1eo | |
Cisco IOS | =12.0\(14\)s7 | |
Cisco IOS | =12.1xr | |
Cisco IOS | =12.0\(2\)xd | |
Cisco IOS | =12.0\(2\) | |
Cisco IOS | =12.0\(9\)s | |
Cisco IOS | =12.1db | |
Cisco IOS | =12.1\(20\)ec | |
Cisco IOS | =12.0\(7\)xk | |
Cisco IOS | =12.1\(20\)ec1 | |
Cisco IOS | =12.0\(5.3\)wc1 | |
Cisco IOS | =12.1xe | |
Cisco IOS | =12.0\(8.3\)sc | |
Cisco IOS | =12.0\(9\)s8 | |
Cisco IOS | =12.0\(16\)s8 | |
Cisco IOS | =12.0xl | |
Cisco IOS | =12.0xs | |
Cisco IOS | =12.0\(2\)xg | |
Cisco IOS | =12.1eu | |
Cisco IOS | =12.0\(15a\) | |
Cisco IOS | =12.1xb | |
Cisco IOS | =12.1yf | |
Cisco IOS | =12.0\(17\) | |
Cisco IOS | =12.0\(12a\) | |
Cisco IOS | =12.1xl | |
Cisco IOS | =12.0\(7\)s1 | |
Cisco IOS | =12.1ax | |
Cisco IOS | =12.1\(20\)e2 | |
Cisco IOS | =12.1ev | |
Cisco IOS | =12.0\(17\)sl2 | |
Cisco IOS | =12.0xb | |
Cisco IOS | =12.1xk | |
Cisco IOS | =12.0\(4\)xe1 | |
Cisco IOS | =12.0\(14\)st3 | |
Cisco IOS | =12.0\(14a\) | |
Cisco IOS | =12.0xh | |
Cisco IOS | =12.0t | |
Cisco IOS | =12.1xw | |
Cisco IOS | =12.0\(10\)w5\(18g\) | |
Cisco IOS | =12.0\(3d\) | |
Cisco IOS | =12.0\(1\)xe | |
Cisco IOS | =12.1yb | |
Cisco IOS | =12.0\(10\)w5 | |
Cisco IOS | =12.0\(7\)xv | |
Cisco IOS | =12.0\(13\)w5\(19c\) | |
Cisco IOS | =12.0\(4\)xe | |
Cisco IOS | =12.0xu | |
Cisco IOS | =12.0\(1\) | |
Cisco IOS | =12.1eb | |
Cisco IOS | =12.0\(16\)w5\(21\) | |
Cisco IOS | =12.0\(7\)xf1 | |
Cisco IOS | =12.0\(3\) | |
Cisco IOS | =12.1dc | |
Cisco IOS | =12.1ex | |
Cisco IOS | =12.0\(7\)t | |
Cisco IOS | =12.1yi | |
Cisco IOS | =12.0\(7a\) | |
Cisco IOS | =12.1 | |
Cisco IOS | =12.1\(20\)ew | |
Cisco IOS | =12.0sl | |
Cisco IOS | =12.1yh | |
Cisco IOS | =12.0\(11\)st4 | |
Cisco IOS | =12.0db | |
Cisco IOS | =12.0\(10a\) | |
Cisco IOS | =12.0\(6b\) | |
Cisco IOS | =12.0\(18\)st1 | |
Cisco IOS | =12.0\(10\)w5\(18f\) | |
Cisco IOS | =12.0\(2\)xf | |
Cisco IOS | =12.1ec | |
Cisco IOS | =12.0\(10\)s7 | |
Cisco IOS | =12.0\(7\)t2 | |
Cisco IOS | =12.0\(5.4\)wc1 | |
Cisco IOS | =12.0\(5.2\)xu | |
Cisco IOS | =12.0\(7\)xk3 | |
Cisco IOS | =12.0\(14\)w5\(20\) | |
Cisco IOS | =12.0w5 | |
Cisco IOS | =12.0\(8a\) | |
Cisco IOS | =12.1xh | |
Cisco IOS | =12.0\(7\)xf | |
Cisco IOS | =12.0\(7\)dc1 | |
Cisco IOS | =12.0\(5\)xe | |
Cisco IOS | =12.0xa | |
Cisco IOS | =12.1xu | |
Cisco IOS | =12.0sc | |
Cisco IOS | =12.1xj | |
Cisco IOS | =12.1\(20\)e | |
Cisco IOS | =12.1aa | |
Cisco IOS | =12.0xn | |
Cisco IOS | =12.0\(4\)t | |
Cisco IOS | =12.0\(5\)xu | |
Cisco IOS | =12.0da | |
Cisco IOS | =12.1xx | |
Cisco IOS | =12.0sp | |
Cisco IOS | =12.0\(15\)s6 | |
Cisco IOS | =12.0\(13a\) | |
Cisco IOS | =12.0\(1\)xa3 | |
Cisco IOS | =12.0\(2\)xc | |
Cisco IOS | =12.1\(20\)ew1 | |
Cisco IOS | =12.0wc | |
Cisco IOS | =12.1ey | |
Cisco IOS | =12.0wx | |
Cisco IOS | =12.0xm | |
Cisco IOS | =12.0\(2b\) | |
Cisco IOS | =12.0\(18b\) | |
Cisco IOS | =12.1xd | |
Cisco IOS | =12.0\(8\) | |
Cisco IOS | =12.0\(5\)wc2b | |
Cisco IOS | =12.1xq | |
Cisco IOS | =12.0\(5\)wc | |
Cisco IOS | =12.0\(17\)s | |
Cisco IOS | =12.0s | |
Cisco IOS | =12.0\(11\)s6 | |
Cisco IOS | =12.0\(17\)st5 | |
Cisco IOS | =12.0wt | |
Cisco IOS | =12.0\(14\)st | |
Cisco IOS | =12.1ay | |
Cisco IOS | =12.0\(18\)s | |
Cisco IOS | =12.0\(7\)xe2 | |
Cisco IOS | =12.0\(5\)t | |
Cisco IOS | =12.0\(18\)w5\(22b\) | |
Cisco IOS | =12.1ea | |
Cisco IOS | =12.1xf | |
Cisco IOS | =12.1ew | |
Cisco IOS | =12.0\(5\)wx | |
Cisco IOS | =12.1da | |
Cisco IOS | =12.0\(5\)wc3b | |
Cisco IOS | =12.1xa | |
Cisco IOS | =12.0xg | |
Cisco IOS | =12.0\(5.1\)xp | |
Cisco IOS | =12.0 | |
Cisco IOS | =12.0\(7\)xe | |
Cisco IOS | =12.1yc | |
Cisco IOS | =12.0\(5\)xk | |
Cisco IOS | =12.0xp | |
Cisco IOS | =12.0\(3\)t2 | |
Cisco IOS | =12.0\(5\)xn | |
Cisco IOS | =12.0\(4\)s | |
Cisco IOS | =12.0\(13\)s6 | |
Cisco IOS | =12.0\(17\)st1 | |
Cisco IOS | =12.1xt | |
Cisco IOS | =12.0\(11a\) | |
Cisco IOS | =12.1m | |
Cisco IOS | =12.0sx | |
Cisco IOS | =12.0\(5\)xn1 | |
Cisco IOS | =12.0xf | |
Cisco IOS | =12.0xi | |
Cisco IOS | =12.1ye | |
Cisco IOS | =12.0\(7\)wx5\(15a\) | |
Cisco IOS | =12.0\(17\)sl6 | |
Cisco IOS | =12.1xv | |
Cisco IOS | =12.0\(5\)wc2 | |
Cisco IOS | =12.0\(12\)s3 | |
Cisco IOS | =12.0\(4\)xm1 | |
Cisco IOS | =12.1yj | |
Cisco IOS | =12.0\(17\)s4 | |
Cisco IOS | =12.0\(2\)xe | |
Cisco IOS | =12.0\(5\)xs |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1434 is considered a moderate severity vulnerability due to its potential impact on system confidentiality.
To fix CVE-2001-1434, ensure that the SNMP community strings are configured properly and restrict access based on network policies.
Cisco IOS versions from 12.0(5)XU to 12.1(2) are affected by CVE-2001-1434.
CVE-2001-1434 allows remote attackers to gain unauthorized access to sensitive system administration and topology information.
Organizations using vulnerable versions of Cisco IOS, specifically those with improperly configured SNMP settings, are at risk from CVE-2001-1434.