# CVE-2002-0241

## Summary

- **CVE ID:** CVE-2002-0241
- **Severity:** UNKNOWN
- **CVSS Score:** 0.01
- **CWE:** N/A
- **Published:** Apr 2, 2003
- **Last Modified:** Mar 16, 2026

## Description

NDSAuth.DLL in Cisco Secure Authentication Control Server (ACS) 3.0.1 does not check the Expired or Disabled state of users in the Novell Directory Services (NDS), which could allow those users to authenticate to the server.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://www.iss.net/security_center/static/8106.php)
- [CNA](http://www.securityfocus.com/bid/4048)
- [CNA](http://www.cisco.com/warp/public/707/ciscosecure-acs-nds-authentication-vuln-pub.shtml)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.19%
- **EPSS Percentile:** 40.7

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-17._