CVE Database
/

CVE-2010-0600

Back to search

CVE-2010-0600

Published: May 27, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 does not properly restrict network access to an unspecified configuration file, which allows remote attackers to read passwords and unspecified other account details via a (1) XML RPC or (2) XML RPC over HTTPS session, aka Bug ID CSCtb83512.

VendorProductVersions

n/a

n/a

affected
n/a

References

1024027
vdb-entry
x_refsource_SECTRACK
40384
vdb-entry
x_refsource_BID
VU#757804
third-party-advisory
x_refsource_CERT-VN
39904
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now