Vulnerabilities > CVE-2008-2053 - Unspecified vulnerability in Cisco Unified Customer Voice Portal 4.0/4.1/7.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Unspecified vulnerability in Cisco Unified Customer Voice Portal (CVP) 4.0.x before 4.0(2)_ES14, 4.1.x before 4.1(1)_ES11, and 7.x before 7.0(1) allows remote authenticated users with administrator role privileges to create, modify, or delete a superuser account.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Seebug
bulletinFamily | exploit |
description | BUGTRAQ ID: 29315 CVE(CAN) ID: CVE-2008-2053 Cisco Unified Customer Voice Portal(CVP)是Cisco用户交互网络解决方案的一部分,可为用户提供语音和视频自助服务集成。 CVP中有三个不同的用户角色:超级用户,管理员和只读访问。CVP中的安全漏洞允许管理员角色的用户创建、修改或删除更高系统权限的超级用户帐号。 Cisco CVP 7.x Cisco CVP 4.1.x Cisco CVP 4.0.x Cisco ----- Cisco已经为此发布了一个安全公告(cisco-sa-20080521-cvp)以及相应补丁: cisco-sa-20080521-cvp:Cisco Voice Portal Privilege Escalation Vulnerability 链接:<a href=http://www.cisco.com/warp/public/707/cisco-sa-20080521-cvp.shtml target=_blank>http://www.cisco.com/warp/public/707/cisco-sa-20080521-cvp.shtml</a> 补丁下载: <a href=http://www.cisco.com/pcgi-bin/tablebuild.pl/36833091037661f49ad8152368c22bbf target=_blank>http://www.cisco.com/pcgi-bin/tablebuild.pl/36833091037661f49ad8152368c22bbf</a> <a href=http://www.cisco.com/pcgi-bin/tablebuild.pl/946b57654c80187da8c3cfc0aa02866e target=_blank>http://www.cisco.com/pcgi-bin/tablebuild.pl/946b57654c80187da8c3cfc0aa02866e</a> |
id | SSV:3328 |
last seen | 2017-11-19 |
modified | 2008-05-24 |
published | 2008-05-24 |
reporter | Root |
title | Cisco Unified Customer Voice Portal权限提升漏洞 |
References
- http://secunia.com/advisories/30289
- http://secunia.com/advisories/30289
- http://securitytracker.com/id?1020080
- http://securitytracker.com/id?1020080
- http://www.cisco.com/en/US/products/products_security_advisory09186a008099beae.shtml
- http://www.cisco.com/en/US/products/products_security_advisory09186a008099beae.shtml
- http://www.securityfocus.com/bid/29315
- http://www.securityfocus.com/bid/29315
- http://www.vupen.com/english/advisories/2008/1603/references
- http://www.vupen.com/english/advisories/2008/1603/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/42564
- https://exchange.xforce.ibmcloud.com/vulnerabilities/42564