CVE
- Id
- 5260
- CVE No.
- CVE-2002-0870
- Status
- Candidate
- Description
- The original patch for the Cisco Content Service Switch 11000 Series authentication bypass vulnerability (CVE-2001-0622) was incomplete, which still allows remote attackers to gain additional privileges by directly requesting the web management URL instead of navigating through the interface, possibly via a variant of the original attack, as identified by Cisco bug ID CSCdw08549.
- Phase
- Proposed (20020830)
- Votes
- ACCEPT(4) Armstrong, Baker, Cole, Wall | MODIFY(1) Frech | NOOP(2) Cox, Foat
- Comments
- Frech> XF:cisco-css-web-management(6631)