Cisco ONS devices TL1 interface bypass authentication

cisco-ons-tl1-auth-bypass (16766) The risk level is classified as MediumMedium Risk

Description:

Multiple Cisco ONS devices could allow a remote attacker to bypass authentication and login to the TL1 interface. If a blank password is set for an account, a remote attacker could supply an arbitrary password containing more than characters to bypass authentication and login to the device.


Consequences:

Bypass Security

Remedy:

Refer to Cisco Systems Inc. Security Advisory, 2004 July 21 at 1600 UTC (GMT) for workaround information or information on obtaining a software upgrade. See References.

References:

  • cisco-sa-20040721-ons: Cisco Security Advisory: Cisco ONS 15327, ONS 15454, ONS 15454 SDH, and ONS 15600 Malformed Packet Vulnerabilities.
  • BID-10768: Cisco ONS Multiple Vulnerabilities
  • CVE-2004-1436: The Transaction Language 1 (TL1) login interface in Cisco ONS 15327 4.6(0) and 4.6(1) and 15454 and 15454 SDH 4.6(0) and 4.6(1), when a user account is configured with a blank password, allows remote attackers to gain unauthorized access by logging in with a password larger than 10 characters.
  • SA12117: Cisco ONS 15000 Multiple Denial of Service Vulnerabilities
  • US-CERT VU#760432: Cisco Transaction Language 1 (TL1) interface fails to properly validate accounts with blank passwords

Platforms Affected:

  • Cisco ONS 15327 3.0
  • Cisco ONS 15327 3.1
  • Cisco ONS 15327 3.2
  • Cisco ONS 15327 3.3
  • Cisco ONS 15327 3.4
  • Cisco ONS 15327 4.0
  • Cisco ONS 15327 4.0(1)
  • Cisco ONS 15327 4.0(2)
  • Cisco ONS 15327 4.1(0)
  • Cisco ONS 15327 4.1(1)
  • Cisco ONS 15327 4.1(2)
  • Cisco ONS 15327 4.1(3)
  • Cisco ONS 15327 4.6(0)
  • Cisco ONS 15327 4.6(1)
  • Cisco ONS 15454 Optical Transport Platform 2.3(5)
  • Cisco ONS 15454 Optical Transport Platform 3.0
  • Cisco ONS 15454 Optical Transport Platform 3.1.0
  • Cisco ONS 15454 Optical Transport Platform 3.2.0
  • Cisco ONS 15454 Optical Transport Platform 3.3
  • Cisco ONS 15454 Optical Transport Platform 3.4
  • Cisco ONS 15454 Optical Transport Platform 4.0
  • Cisco ONS 15454 Optical Transport Platform 4.0(1)
  • Cisco ONS 15454 Optical Transport Platform 4.0(2)
  • Cisco ONS 15454 Optical Transport Platform 4.1(0)
  • Cisco ONS 15454 Optical Transport Platform 4.1(1)
  • Cisco ONS 15454 Optical Transport Platform 4.1(2)
  • Cisco ONS 15454 Optical Transport Platform 4.1(3)
  • Cisco ONS 15454 Optical Transport Platform 4.5
  • Cisco ONS 15454 Optical Transport Platform 4.6(0)
  • Cisco ONS 15454 Optical Transport Platform 4.6(1)
  • Cisco ONS 15454SDH 2.3(5)
  • Cisco ONS 15454SDH 3.1
  • Cisco ONS 15454SDH 3.2
  • Cisco ONS 15454SDH 3.3
  • Cisco ONS 15454SDH 3.4
  • Cisco ONS 15454SDH 4.0(0)
  • Cisco ONS 15454SDH 4.0(1)
  • Cisco ONS 15454SDH 4.0(2)
  • Cisco ONS 15454SDH 4.1(0)
  • Cisco ONS 15454SDH 4.1(1)
  • Cisco ONS 15454SDH 4.1(2)
  • Cisco ONS 15454SDH 4.1(3)
  • Cisco ONS 15454SDH 4.5
  • Cisco ONS 15454SDH 4.6(0)
  • Cisco ONS 15454SDH 4.6(1)
  • Cisco ONS 15600 1.0
  • Cisco ONS 15600 1.1
  • Cisco ONS 15600 1.1(0)
  • Cisco ONS 15600 1.1(1)
  • Cisco ONS 15600 1.3(0)

Reported:

Jul 21, 2004

The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

For corrections or additions please email xforce@iss.net

Return to the main page