Project Subscriptions
| Vendors | Products |
|---|---|
|
Cisco
Subscribe
|
1100-4p Integrated Services Router
Subscribe
1100-8p Integrated Services Router
Subscribe
1101-4p Integrated Services Router
Subscribe
1109-2p Integrated Services Router
Subscribe
1109-4p Integrated Services Router
Subscribe
1111x-8p Integrated Services Router
Subscribe
4221 Integrated Services Router
Subscribe
4331 Integrated Services Router
Subscribe
4431 Integrated Services Router
Subscribe
4461 Integrated Services Router
Subscribe
Asr 1000-x
Subscribe
Asr 1001-hx
Subscribe
Asr 1002-hx
Subscribe
Asr 1002-x
Subscribe
Asr 1004
Subscribe
Asr 1006
Subscribe
Asr 1006-x
Subscribe
Asr 1009-x
Subscribe
Asr 1013
Subscribe
Csr1000v
Subscribe
Ios Xe
Subscribe
Ir1101
Subscribe
Nexus 56128p
Subscribe
Nexus 5624q
Subscribe
Nexus 5648q
Subscribe
Nexus 5672up
Subscribe
Nexus 5672up-16g
Subscribe
Nexus 5696q
Subscribe
Ucs-e1120d-m3
Subscribe
Ucs-e140s-m2
Subscribe
Ucs-e160d-m2
Subscribe
Ucs-e160s-m3
Subscribe
Ucs-e180d-m2
Subscribe
Ucs-e180d-m3
Subscribe
|
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-10507 | A vulnerability in Cisco IOS XE SD-WAN Software could allow an unauthenticated, local attacker to gain unauthorized access to an affected device. The vulnerability is due to the existence of default credentials within the default configuration of an affected device. An attacker who has access to an affected device could log in with elevated privileges. A successful exploit could allow the attacker to take complete control of the device. This vulnerability affects Cisco devices that are running Cisco IOS XE SD-WAN Software releases 16.11 and earlier. |
Solution
Cisco fixed this vulnerability in Cisco IOS XE SD-WAN Software Release 16.12.1.
Workaround
To check for the presence of default credentials, customers can use the show running-configuration | include username admin command within the Cisco IOS XE SD-WAN Software command line. To remove the default credentials, customers can use the config-transaction and no username admin commands.
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2024-11-15T17:39:14.041Z
Reserved: 2018-12-06T00:00:00
Link: CVE-2019-1950
No data.
Status : Modified
Published: 2020-02-19T20:15:14.410
Modified: 2024-11-21T04:37:45.133
Link: CVE-2019-1950
No data.
OpenCVE Enrichment
No data.
EUVD