Cisco IOS Vulnerability

Larry Diffey ldiffey at technologyforward.com
Fri Jun 29 23:35:04 UTC 2001


CERT and Cisco have issued a warning about a vulnerability in the Cisco IOS starting at version 11.3 and affecting all later versions.

If your Cisco equipment is HTTP enabled and you're not using TACACS+ or RADIUS for authentication it is vulnerable to complete takeover.  The hack is very simple.

Please read the Cisco warning and/or the CERT advisory for further information.

The warnings were released yesterday.

Happy Hacker Stopping.

Larry Diffey

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20010629/be5e3b16/attachment.html>


More information about the NANOG mailing list