PT-2014-3767 · Cisco · Cisco Mediasense

Publicado

2014-01-22

·

Atualizado

2017-08-29

·

CVE-2014-0672

CVSS v2.0

4.0

Média

VetorAV:N/AC:L/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Cisco MediaSense (affected versions not specified)
Description The issue concerns the Search and Play interface in Cisco MediaSense, where authorization requirements are not properly enforced. This allows remote authenticated users to download arbitrary recordings by making a request to the interface.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-0672

Produtos afetados

Cisco Mediasense