Back to search
CVE-2003-0731
Published: Sep 4, 2003
Modified: Sep 16, 2024
PUBLISHED
Description
CiscoWorks Common Management Foundation (CMF) 2.1 and earlier allows the guest user to gain administrative privileges via a certain POST request to com.cisco.nm.cmf.servlet.CsAuthServlet, possibly involving the "cmd" parameter with a modifyUser value and a modified "priviledges" parameter.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20030813 Portcullis Security Advisory: CiscoWorks 2000 Privilege Escalation Vulnerabilities
mailing-list
x_refsource_BUGTRAQ
20030813 CiscoWorks Application Vulnerabilities
vendor-advisory
x_refsource_CISCO
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now