Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.106851
Kategorie:CISCO
Titel:Cisco Prime Data Center Network Manager Debug Remote Code Execution Vulnerability
Zusammenfassung:A vulnerability in the role-based access control (RBAC) functionality of;Cisco Prime Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to access;sensitive information or execute arbitrary code with root privileges on an affected system.
Beschreibung:Summary:
A vulnerability in the role-based access control (RBAC) functionality of
Cisco Prime Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to access
sensitive information or execute arbitrary code with root privileges on an affected system.

Vulnerability Insight:
The vulnerability is due to the lack of authentication and authorization
mechanisms for a debugging tool that was inadvertently enabled in the affected software. An attacker could
exploit this vulnerability by remotely connecting to the debugging tool via TCP.

Vulnerability Impact:
A successful exploit could allow the attacker to access sensitive information
about the affected software or execute arbitrary code with root privileges on the affected system.

Solution:
Update to Cisco Prime DCNM Software releases 10.2(1) or later.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-6639
BugTraq ID: 98935
http://www.securityfocus.com/bid/98935
http://www.securitytracker.com/id/1038626
CopyrightCopyright (C) 2017 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.