Cisco Security Manager 3.1 and 3.2 before 3.2.2, when Cisco IPS Event Viewer (IEV) is used, exposes TCP ports used by the MySQL daemon and IEV server, which allows remote attackers to obtain "root access" to IEV via unspecified use of TCP sessions to these ports.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:50
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/33633 - Vendor Advisory | |
References | () http://www.cisco.com/en/US/products/products_security_advisory09186a0080a6192a.shtml - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/33381 - | |
References | () http://www.securitytracker.com/id?1021619 - | |
References | () http://www.vupen.com/english/advisories/2009/0214 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/48134 - |
Information
Published : 2009-01-22 18:30
Updated : 2024-11-21 00:50
NVD link : CVE-2008-3820
Mitre link : CVE-2008-3820
CVE.ORG link : CVE-2008-3820
JSON object : View
Products Affected
cisco
- security_manager
CWE