Multiple buffer overflows in the authentication functionality in the web-server module in Cisco CiscoWorks Common Services before 4.0 allow remote attackers to execute arbitrary code via a session on TCP port (1) 443 or (2) 1741, aka Bug ID CSCti41352.
References
Link | Resource |
---|---|
http://osvdb.org/68927 | |
http://secunia.com/advisories/42011 | Vendor Advisory |
http://securitytracker.com/id?1024646 | |
http://www.cisco.com/en/US/products/products_security_advisory09186a0080b51501.shtml | Patch Vendor Advisory |
http://www.securityfocus.com/bid/44468 | Patch |
http://www.vupen.com/english/advisories/2010/2793 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2010-10-29 19:00
Updated : 2024-02-04 17:54
NVD link : CVE-2010-3036
Mitre link : CVE-2010-3036
CVE.ORG link : CVE-2010-3036
JSON object : View
Products Affected
cisco
- ciscoworks_lan_management_solution
- ciscoworks_common_services
- unified_service_monitor
- telepresence_readiness_assessment_manager
- unified_operations_manager
- security_manager
- qos_policy_manager
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer