Vulnerability Name: | CVE-2000-0368 (CCN-1462) | ||||||||
Assigned: | 1998-10-14 | ||||||||
Published: | 1998-10-14 | ||||||||
Updated: | 2016-09-21 | ||||||||
Summary: | Classic Cisco IOS 9.1 and later allows attackers with access to the login prompt to obtain portions of the command history of previous users, which may allow the attacker to access sensitive data. | ||||||||
CVSS v3 Severity: | 4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 2.1 Low (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||
Vulnerability Type: | CWE-200 | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: MITRE Type: CNA CVE-2000-0368 Source: CCN Type: CIAC Information Bulletin J-009 Cisco IOS Command History Release at Login Prompt Source: CIAC Type: Patch, Vendor Advisory J-009 Source: CCN Type: Cisco Systems Field Notice, Wednesday, October 14, 1998 Cisco IOS Command History Release at Login Prompt Source: CISCO Type: Patch, Vendor Advisory 19981014 Cisco IOS Command History Release at Login Prompt Source: CCN Type: OSVDB ID: 7634 Classic Cisco IOS Command History Information Disclosure Source: XF Type: UNKNOWN cisco-history-leak(1462) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |