Cisco Secure Access Control Server (ACS) 3.2(3) and earlier, when configured with an anonymous bind in Novell Directory Services (NDS) and authenticating NDS users with NDS, allows remote attackers to gain unauthorized access to AAA clients via a blank password.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2004-12-31 05:00
Updated : 2017-07-11 01:31
NVD link : CVE-2004-1460
Mitre link : CVE-2004-1460
CVE.ORG link : CVE-2004-1460
JSON object : View
Products Affected
cisco
- secure_access_control_server
- secure_acs_solution_engine
CWE