{ "id": "CVE-2009-0618", "sourceIdentifier": "ykramarz@cisco.com", "published": "2009-02-26T16:17:20.093", "lastModified": "2009-03-03T07:04:49.500", "vulnStatus": "Modified", "descriptions": [ { "lang": "en", "value": "Unspecified vulnerability in the Java agent in Cisco Application Networking Manager (ANM) before 2.0 Update A allows remote attackers to gain privileges, and cause a denial of service (service outage) by stopping processes, or obtain sensitive information by reading configuration files." }, { "lang": "es", "value": "Vulnerabilidad no especificada en el agente Java de Cisco Application Networking Manager (ANM) anterior a 2.0 Actualizaci\u00f3n A, permite a atacantes remotos obtener privilegios y provocar una denegaci\u00f3n de servicio -parada del servicio- deteniendo procesos, u obteniendo informaci\u00f3n sensible leyendo los ficheros de configuraci\u00f3n." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:C", "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "availabilityImpact": "COMPLETE", "baseScore": 8.5 }, "baseSeverity": "HIGH", "exploitabilityScore": 10.0, "impactScore": 7.8, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-Other" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:cisco:application_networking_manager:*:*:*:*:*:*:*:*", "versionEndIncluding": "2.0", "matchCriteriaId": "35411333-C72A-47B8-8109-5BA29795C1CC" }, { "vulnerable": true, "criteria": "cpe:2.3:a:cisco:application_networking_manager:1.1:*:*:*:*:*:*:*", "matchCriteriaId": "0E427057-56BC-4E7C-8DBA-0388A6C81C87" }, { "vulnerable": true, "criteria": "cpe:2.3:a:cisco:application_networking_manager:1.2:*:*:*:*:*:*:*", "matchCriteriaId": "888608EE-2818-4F72-8690-E8595B320872" } ] } ] } ], "references": [ { "url": "http://www.cisco.com/en/US/products/products_security_advisory09186a0080a7bc84.shtml", "source": "ykramarz@cisco.com", "tags": [ "Patch", "Vendor Advisory" ] }, { "url": "http://www.securityfocus.com/bid/33903", "source": "ykramarz@cisco.com" }, { "url": "http://www.securitytracker.com/id?1021772", "source": "ykramarz@cisco.com" } ] }