Show filters
17 Total Results
Displaying 11-17 of 17
Sort by:
Attacker Value
Unknown

CVE-2002-1558

Disclosure Date: March 31, 2003 (last updated February 22, 2025)
Cisco ONS15454 and ONS15327 running ONS before 3.4 have an account for the VxWorks Operating System in the TCC, TCC+ and XTC that cannot be changed or disabled, which allows remote attackers to gain privileges by connecting to the account via Telnet.
0
Attacker Value
Unknown

CVE-2002-1554

Disclosure Date: March 31, 2003 (last updated February 22, 2025)
Cisco ONS15454 and ONS15327 running ONS before 3.4 stores usernames and passwords in cleartext in the image database for the TCC, TCC+ or XTC, which could allow attackers to gain privileges by obtaining the passwords from the image database or a backup.
0
Attacker Value
Unknown

CVE-2002-1553

Disclosure Date: March 31, 2003 (last updated February 22, 2025)
Cisco ONS15454 and ONS15327 running ONS before 3.4 allows remote attackers to modify the system configuration and delete files by establishing an FTP connection to the TCC, TCC+ or XTC using a username and password that does not exist.
0
Attacker Value
Unknown

CVE-2002-1555

Disclosure Date: March 31, 2003 (last updated February 22, 2025)
Cisco ONS15454 and ONS15327 running ONS before 3.4 uses a "public" SNMP community string that cannot be changed, which allows remote attackers to obtain sensitive information.
0
Attacker Value
Unknown

CVE-2002-1556

Disclosure Date: March 31, 2003 (last updated February 22, 2025)
Cisco ONS15454 and ONS15327 running ONS before 3.4 allows attackers to cause a denial of service (reset) via an HTTP request to the TCC, TCC+ or XTC, in which the request contains an invalid CORBA Interoperable Object Reference (IOR).
0
Attacker Value
Unknown

CVE-2002-1557

Disclosure Date: March 31, 2003 (last updated February 22, 2025)
Cisco ONS15454 and ONS15327 running ONS before 3.4 allows attackers to cause a denial of service (reset to TCC, TCC+, TCCi or XTC) via a malformed HTTP request that does not contain a leading / (slash) character.
0
Attacker Value
Unknown

CVE-2002-0952

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Cisco ONS15454 optical transport platform running ONS 3.1.0 to 3.2.0 allows remote attackers to cause a denial of service (reset) by sending IP packets with non-zero Type of Service (TOS) bits to the Timing Control Card (TCC) LAN interface.
0