Loading
The web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands without authentication when the enable password is not set, via a URL containing the /exec/ directory.
Use Cisco vendor hub and Catalyst 3500 Xl product page to widen CVE-2000-0945 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2005-4258 and CVE-2013-1100 for nearby disclosures in the same product family. Additional editorial context is available in The Weekly Cybersecurity Brief: February 13th, 2026.