PT-2013-2883 · Cisco · Cisco Ata 187 Analog Telephone Adaptor
Publicado
2013-02-13
·
Atualizado
2013-02-14
·
CVE-2013-1111
CVSS v2.0
9.0
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco ATA 187 Analog Telephone Adaptor versions 9.2.1.0 through 9.2.3.1 before ES build 4
Description
The issue is related to improper access control implementation, allowing remote attackers to execute operating-system commands. This can be done via vectors involving a session on TCP port 7870.
Recommendations
For versions 9.2.1.0 through 9.2.3.1, update to ES build 4 or later to resolve the issue. As a temporary workaround, consider restricting access to TCP port 7870 to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cisco Ata 187 Analog Telephone Adaptor