Cisco View-based Access Control MIB SNMP Walk Read-Write Password Revealing Vulnerability

Cisco IOS and CatOS are the network firmware developed and maintained by Cisco.

The problem involves the design of the View Access Control MIB (VACM) used by Cisco firmware. Under some circumstances, it may be possible for a remote user to gain access to the Read-Write password. This could allow an attacker to change configuration settings on the device.


