Unrated severityNVD Advisory· Published Dec 31, 2004· Updated Apr 16, 2026
CVE-2004-1436
CVE-2004-1436
Description
The Transaction Language 1 (TL1) login interface in Cisco ONS 15327 4.6(0) and 4.6(1) and 15454 and 15454 SDH 4.6(0) and 4.6(1), when a user account is configured with a blank password, allows remote attackers to gain unauthorized access by logging in with a password larger than 10 characters.
Affected products
23cpe:2.3:a:cisco:optical_networking_systems_software:1.0:*:*:*:*:*:*:*+ 22 more
- cpe:2.3:a:cisco:optical_networking_systems_software:1.0:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:1.1:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:1.1\(0\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:1.1\(1\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:1.3\(0\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:2.3\(5\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:3.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:3.2:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:3.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:3.3.0:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:3.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.0\(0\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.0\(1\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.0\(2\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.1\(0\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.1\(1\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.1\(2\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.1\(3\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.5:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.6\(0\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:optical_networking_systems_software:4.6\(1\):*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.cisco.com/warp/public/707/cisco-sa-20040721-ons.shtmlnvdVendor Advisory
- www.kb.cert.org/vuls/id/760432nvdThird Party AdvisoryUS Government Resource
- secunia.com/advisories/12117nvd
- www.securityfocus.com/bid/10768nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/16766nvd
News mentions
0No linked articles in our index yet.