HIGH✓ PATCH🇵🇱 Wersja polska

CVE-2009-0621

CVSS 10.0v2.0pub. 2009-02-26upd. 2026-04-23

Cisco ACE 4710 Application Control Engine Appliance before A1(8a) uses default (1) usernames and (2) passwords for (a) the administrator, (b) web management, and (c) device management, which makes it easier for remote attackers to perform configuration changes to the Device Manager and other components, or obtain operating-system access.

CVSS Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
  • Cisco Ace 4710

    HW
    Cisco
    all versions
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
CWE
References

Related vulnerabilities

CVE-2010-2825HIGH7.8same product

Unspecified vulnerability in the SIP inspection feature on the Cisco Application Control Engine (ACE) Module w...

CVE-2010-2823HIGH7.8same product

Unspecified vulnerability in the deep packet inspection feature on the Cisco Application Control Engine (ACE) ...

CVE-2010-2822HIGH7.8same product

Unspecified vulnerability in the RTSP inspection feature on the Cisco Application Control Engine (ACE) Module ...

CVE-2010-2629HIGH7.5same product

The Cisco Content Services Switch (CSS) 11500 with software 8.20.4.02 and the Application Control Engine (ACE)...

CVE-2010-1576HIGH7.5same product

The Cisco Content Services Switch (CSS) 11500 with software before 8.20.4.02 and the Application Control Engin...