Description
Multiple vulnerabilities in the web-based management interface of the Cisco Catalyst Passive Optical Network (PON) Series Switches Optical Network Terminal (ONT) could allow an unauthenticated, remote attacker to perform the following actions: Log in with a default credential if the Telnet protocol is enabled Perform command injection Modify the configuration For more information about these vulnerabilities, see the Details section of this advisory.
Published: 2021-11-04
Score: 10 Critical
EPSS: 13.7% Moderate
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 07 Nov 2024 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Cisco Catalyst Pon Switch Cgp-ont-1p Catalyst Pon Switch Cgp-ont-1p Firmware Catalyst Pon Switch Cgp-ont-4p Catalyst Pon Switch Cgp-ont-4p Firmware Catalyst Pon Switch Cgp-ont-4pv Catalyst Pon Switch Cgp-ont-4pv Firmware Catalyst Pon Switch Cgp-ont-4pvc Catalyst Pon Switch Cgp-ont-4pvc Firmware Catalyst Pon Switch Cgp-ont-4tvcw Catalyst Pon Switch Cgp-ont-4tvcw Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-11-07T21:53:19.817Z

Reserved: 2021-08-25T00:00:00.000Z

Link: CVE-2021-40113

cve-icon Vulnrichment

Updated: 2024-08-04T02:27:31.502Z

cve-icon NVD

Status : Modified

Published: 2021-11-04T16:15:09.217

Modified: 2024-11-21T06:23:35.777

Link: CVE-2021-40113

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses