CVE

Id
5260  
CVE No.
CVE-2002-0870  
Status
Candidate  
Description
The original patch for the Cisco Content Service Switch 11000 Series authentication bypass vulnerability (CVE-2001-0622) was incomplete, which still allows remote attackers to gain additional privileges by directly requesting the web management URL instead of navigating through the interface, possibly via a variant of the original attack, as identified by Cisco bug ID CSCdw08549.  
Phase
Proposed (20020830)  
Votes
ACCEPT(4) Armstrong, Baker, Cole, Wall | MODIFY(1) Frech | NOOP(2) Cox, Foat  
Comments
Frech> XF:cisco-css-web-management(6631)