Executive Summary
| Informations | |||
|---|---|---|---|
| Name | CVE-2011-1647 | First vendor Publication | 2011-05-31 |
| Vendor | Cve | Last vendor Modification | 2011-09-06 |
Security-Database Scoring CVSS v2
| Cvss vector : (AV:N/AC:L/Au:N/C:P/I:N/A:N) | |||
|---|---|---|---|
| Cvss Base Score | 5 | Attack Range | Network |
| Cvss Impact Score | 2.9 | Attack Complexity | Low |
| Cvss Expoit Score | 10 | Authentification | None Required |
| Calculate full CVSS 2.0 Vectors scores | |||
Detail
The web management interface on the Cisco RVS4000 Gigabit Security Router with software 1.x before 1.3.3.4 and 2.x before 2.0.2.7, and the WRVS4400N Gigabit Security Router with software before 2.0.2.1, allows remote attackers to read the private key for the admin SSL certificate via unspecified vectors, aka Bug ID CSCtn23871. |
Original Source
| Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1647 |
CWE : Common Weakness Enumeration
| id | Name |
|---|---|
| CWE-200 | Information Exposure |
CPE : Common Platform Enumeration
| Type | Description | Count |
|---|---|---|
| Application | 4 | |
| Application | 4 | |
| Hardware | 2 | |
| Hardware | 3 |
Open Source Vulnerability Database (OSVDB)
| id | Description |
|---|---|
| 72619 | Cisco RVS4000 / WRVS4400N Gigabit Routers Web Management Interface Unauthenti... |
Internal Sources (Detail)
| Source | Url |
|---|---|
| BID | http://www.securityfocus.com/bid/47985 |
| CISCO | http://www.cisco.com/en/US/products/products_security_advisory09186a0080b7f19... |
| SECTRACK | http://www.securitytracker.com/id?1025565 |
Alert History
| Date | Informations |
|---|---|
| 2013-05-10 22:59:03 |
|

CVE-2011-1647
(Critical)





