CVE-2009-0742
Severity CVSS v4.0:
Pending analysis
Type:
CWE-310
Cryptographic Issues
Publication date:
26/02/2009
Last modified:
09/04/2025
Description
The username command in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers and Cisco ACE 4710 Application Control Engine Appliance stores a cleartext password by default, which allows context-dependent attackers to obtain sensitive information.
Impact
Base Score 2.0
7.80
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:h:cisco:application_control_engine_module:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:cisco:catalyst_6500:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:cisco:catalyst_7600:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:cisco:ace_4710:*:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



