CVE-2010-1574
Last modified
CVE-2010-1574 is a vulnerability of currently unknown severity. IOS 12.2(52)SE and 12.2(52)SE1 on Cisco Industrial Ethernet (IE) 3000 series switches has (1) a community name of public for RO access and (2) a community name of private for RW access, which makes it easier for remote attackers to modify the configuration or obtain potentially sensitive information via SNMP requests, aka Bug ID CSCtf25589.. EPSS estimates a 4.73% chance of exploitation in the next 30 days.
Description
IOS 12.2(52)SE and 12.2(52)SE1 on Cisco Industrial Ethernet (IE) 3000 series switches has (1) a community name of public for RO access and (2) a community name of private for RW access, which makes it easier for remote attackers to modify the configuration or obtain potentially sensitive information via SNMP requests, aka Bug ID CSCtf25589.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | 12.2\(52\)se |
| Cisco | Ios | 12.2\(52\)se1 |
| Cisco | Industrial Ethernet 3000 | All versions |
References
- http://secunia.com/advisories/40407Vendor Advisory
- http://www.kb.cert.org/vuls/id/732671US Government Resource
- http://secunia.com/advisories/40407Vendor Advisory
- http://www.kb.cert.org/vuls/id/732671US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2010-1574?
How severe is CVE-2010-1574?
How do I fix CVE-2010-1574?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2010
- CVE-2010-1567The SIP implementation on the Cisco PGW 2200 Softswitch with…
- CVE-2010-1568The Send Secure functionality in the Cisco IronPort Desktop …
- CVE-2010-1570The computer telephony integration (CTI) server component in…
- CVE-2010-1571Directory traversal vulnerability in the bootstrap service i…
- CVE-2010-1572Unspecified vulnerability in the tech support diagnostic she…
- CVE-2010-1573Linksys WAP54Gv3 firmware 3.04.03 and earlier uses a hard-co…9.8
- CVE-2010-1575The Cisco Content Services Switch (CSS) 11500 with software …
- CVE-2010-1576The Cisco Content Services Switch (CSS) 11500 with software …
- CVE-2010-1577Directory traversal vulnerability in Cisco Internet Streamer…
- CVE-2010-1578Unspecified vulnerability in the SunRPC inspection feature o…
- CVE-2010-1579Unspecified vulnerability in the SunRPC inspection feature o…
- CVE-2010-1580Unspecified vulnerability in the SunRPC inspection feature o…
Are you affected by CVE-2010-1574?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
