6.5

CVE-2016-1452

Cisco ASR 5000 devices with software 18.3 through 20.0.0 allow remote attackers to make configuration changes over SNMP by leveraging knowledge of the read-write community, aka Bug ID CSCuz29526.

Data is provided by the National Vulnerability Database (NVD)
CiscoAsr 5000 Version-
CiscoAsr 5000 Software Version18.3.0
CiscoAsr 5000 Software Version18.3_base
CiscoAsr 5000 Software Version19.0.1
CiscoAsr 5000 Software Version19.0.m0.60737
CiscoAsr 5000 Software Version19.0.m0.60828
CiscoAsr 5000 Software Version19.0.m0.61045
CiscoAsr 5000 Software Version19.1.0
CiscoAsr 5000 Software Version19.1.0.61559
CiscoAsr 5000 Software Version19.2.0
CiscoAsr 5000 Software Version19.3.0
CiscoAsr 5000 Software Version20.0.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.27% 0.47
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.5 3.9 2.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:P/I:P/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.