CVE-2013-5522: Medium severity cisco ios vulnerability
Published Oct 25, 2013
·Updated
Cisco IOS on Catalyst 3750X switches has default Service Module credentials, which makes it easier for local users to gain privileges via a Service Module login, aka Bug ID CSCue92286.
Affected Software
2 affected components
cisco IOS
cisco Catalyst 3750-x
Event History
Oct 25, 2013
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-5522?
CVE-2013-5522 has a CVSS base score of 7.5, indicating a high severity vulnerability.
2
How do I fix CVE-2013-5522?
To fix CVE-2013-5522, change the default Service Module credentials to strong, unique passwords.
3
Which devices are affected by CVE-2013-5522?
CVE-2013-5522 affects Cisco IOS on Catalyst 3750X switches.
4
What type of vulnerability is CVE-2013-5522?
CVE-2013-5522 is a local privilege escalation vulnerability due to default credentials.
5
Can CVE-2013-5522 be exploited remotely?
CVE-2013-5522 requires local access for exploitation, making it less critical than remote vulnerabilities.