int(4435)

Vulnerability Bulletins


Acceso no autorizado en Cisco Security Manager

Vulnerability classification

Property Value
Confidence level Oficial
Impact Aumento de privilegios
Dificulty Experto
Required attacker level Acceso remoto sin cuenta a un servicio estandar

System information

Property Value
Affected manufacturer Networking
Affected software Cisco Security Manager 3.x < 3.2.2

Description

Se ha descubierto una vulnerabilidad en el servidor Cisco Security Manager cuando está corriendo IEV (IPS Event Viewer).

Un atacante remoto podría obtener acceso no autorizado al servidor y a la base de datos del IEV mediante el uso de puertos TCP que se abren en el CSM al lanzar el IEV.

Solution



Actualización de software

Cisco
Cisco Security Manager 3.1 / patch CSM310PatchCSCsv66897.zip
Cisco Security Manager 3.1.1.SP3 / patch CSM311SP3PatchCSCsv66897.zip
Cisco Security Manager 3.2.SP2 / patch CSM320SP2PatchCSCsv66897.zip
Cisco Security Manager 3.2.1.SP1 / patch CSM321SP1PatchCSCsv66897.zip
http://tools.cisco.com/support/downloads/

Standar resources

Property Value
CVE CVE-2008-3820
BID 33381

Other resources

Cisco Security Advisory (cisco-sa-20090121-csm)
http://www.cisco.com/en/US/products/products_security_advisory09186a0080a6192a.shtml

Version history

Version Comments Date
1.0 Aviso emitido 2009-01-22
Ministerio de Defensa
CNI
CCN
CCN-CERT