Lucene search

K
cve[email protected]CVE-2011-1647
HistoryMay 31, 2011 - 8:55 p.m.

CVE-2011-1647

2011-05-3120:55:02
CWE-200
web.nvd.nist.gov
26
cisco
rvs4000
wrvs4400n
router
software
vulnerability
cve-2011-1647
ssl
remote attack

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.8 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

68.4%

The web management interface on the Cisco RVS4000 Gigabit Security Router with software 1.x before 1.3.3.4 and 2.x before 2.0.2.7, and the WRVS4400N Gigabit Security Router with software before 2.0.2.1, allows remote attackers to read the private key for the admin SSL certificate via unspecified vectors, aka Bug ID CSCtn23871.

Affected configurations

NVD
Node
ciscorvs4000Match1
OR
ciscorvs4000Match2
AND
ciscorvs4000_softwareMatch1.3.0.5
OR
ciscorvs4000_softwareMatch1.3.1.0
OR
ciscorvs4000_softwareMatch1.3.2.0
OR
ciscorvs4000_softwareMatch2.0.0.3
Node
ciscowrvs4400nMatch1.0
OR
ciscowrvs4400nMatch1.1
OR
ciscowrvs4400nMatch2
AND
ciscowrvs4400n_softwareMatch1.3.0.5
OR
ciscowrvs4400n_softwareMatch1.3.1.0
OR
ciscowrvs4400n_softwareMatch1.3.2.0
OR
ciscowrvs4400n_softwareMatch2.0.0.3

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.8 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

68.4%