CVE-2009-0742

Severity CVSS v4.0:
Pending analysis
Type:
CWE-310 Cryptographic Issues
Publication date:
26/02/2009
Last modified:
09/04/2025

Description

The username command in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers and Cisco ACE 4710 Application Control Engine Appliance stores a cleartext password by default, which allows context-dependent attackers to obtain sensitive information.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:cisco:application_control_engine_module:*:*:*:*:*:*:*:*
cpe:2.3:h:cisco:catalyst_6500:*:*:*:*:*:*:*:*
cpe:2.3:h:cisco:catalyst_7600:*:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ace_4710:*:*:*:*:*:*:*:*