Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2004-1460

Cisco Secure Access Control Server (ACS) 3.2(3) and earlier, when configured with an anonymous bind in Novell Directory Services (NDS) and authenticating NDS users with NDS, allows remote attackers to gain unauthorized access to AAA clients via a blank password.

SeverityHIGH
CVSS7.5
CWENVD-CWE-Other
KEV
Published
Modified

Related Products

Product Advisory Evidence
Cisco Secure Access Control Server Solution Engine (ACSE) cisco-sa-20040825-acs Cisco OpenVuln
Cisco Secure Access Control Server (ACS) for Windows cisco-sa-20040825-acs Cisco OpenVuln