CVE-2010-1574
Last modified
CVE-2010-1574 is a vulnerability of currently unknown severity. IOS 12.2(52)SE and 12.2(52)SE1 on Cisco Industrial Ethernet (IE) 3000 series switches has (1) a community name of public for RO access and (2) a community name of private for RW access, which makes it easier for remote attackers to modify the configuration or obtain potentially sensitive information via SNMP requests, aka Bug ID CSCtf25589.. EPSS estimates a 4.73% chance of exploitation in the next 30 days.
Description
IOS 12.2(52)SE and 12.2(52)SE1 on Cisco Industrial Ethernet (IE) 3000 series switches has (1) a community name of public for RO access and (2) a community name of private for RW access, which makes it easier for remote attackers to modify the configuration or obtain potentially sensitive information via SNMP requests, aka Bug ID CSCtf25589.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | 12.2\(52\)se |
| Cisco | Ios | 12.2\(52\)se1 |
| Cisco | Industrial Ethernet 3000 | All versions |
References
- http://secunia.com/advisories/40407Vendor Advisory
- http://www.kb.cert.org/vuls/id/732671US Government Resource
- http://secunia.com/advisories/40407Vendor Advisory
- http://www.kb.cert.org/vuls/id/732671US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2010-1574?
How severe is CVE-2010-1574?
How do I fix CVE-2010-1574?
Are you affected by CVE-2010-1574?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
