PT-2013-2883 · Cisco · Cisco Ata 187 Analog Telephone Adaptor

Published

2013-02-13

·

Updated

2013-02-14

·

CVE-2013-1111

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:C
Name of the Vulnerable Software and Affected Versions Cisco ATA 187 Analog Telephone Adaptor versions 9.2.1.0 through 9.2.3.1 before ES build 4
Description The issue is related to improper access control implementation, allowing remote attackers to execute operating-system commands. This can be done via vectors involving a session on TCP port 7870.
Recommendations For versions 9.2.1.0 through 9.2.3.1, update to ES build 4 or later to resolve the issue. As a temporary workaround, consider restricting access to TCP port 7870 to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-1111

Affected Products

Cisco Ata 187 Analog Telephone Adaptor