CVE-2001-0537

Confirmed PUBLISHED

HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when local authorization is being...

Vendor: Cisco Product: IOS

Not yet in CISA KEV

Exploited in the wild Active exploitation observed PoC available

Recommended Action

Prioritize immediate patching and validate internet-facing exposure. Monitor for matching exploitation attempts in your environment.

Confidence
Confirmed
Exploitation Status
Active exploitation observed
Observed in Sensors
Yes
Attempts (30d)
25
Unique Attacker IPs
7
CISA KEV
Not yet in CISA KEV
CVSS / EPSS
9.3 High EPSS 68.5%

At a Glance

HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when local authorization is being used, by specifying a high access level in the URL.

nuclei_scanner ios edge
CVE Published
Mar 09, 2002
Exploitation Reported
Jun 21, 2025
CVSS
9.3 High
EPSS
68.5%
Remote Unauthenticated

Sensor telemetry available

CVE References

  • 20010627 IOS HTTP authorization vulnerability cisco.com · Vendor Advisory http://www.cisco.com/warp/public/707/IOS-httplevel-pub.html
  • CA-2001-14 cert.org · Third-Party Advisory http://www.cert.org/advisories/CA-2001-14.html
  • L-106 ciac.org · Third-Party Advisory http://www.ciac.org/ciac/bulletins/l-106.shtml
  • 578 osvdb.org · VDB Entry http://www.osvdb.org/578
  • 2936 securityfocus.com · VDB Entry http://www.securityfocus.com/bid/2936
Show 5 more references