PT-2003-1992 · Cisco · Cisco Unity

Published

2003-12-11

·

Updated

2008-09-10

·

CVE-2003-0983

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Cisco Unity on IBM servers (affected versions not specified)
Description The issue arises from default settings in Cisco Unity on IBM servers that were not disabled by the manufacturer. This allows local or remote attackers to perform unauthorized activities through several means, including a "bubba" local user account, an open TCP port 34571, or when a local DHCP server is unavailable, by connecting to a DHCP server on the manufacturer's test network.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2003-0983

Affected Products

Cisco Unity