René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

109 lines
3.1 KiB
JSON

{
"id": "CVE-2006-2166",
"sourceIdentifier": "cve@mitre.org",
"published": "2006-05-04T12:38:00.000",
"lastModified": "2018-10-30T16:25:29.480",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Unspecified vulnerability in the HTTP management interface in Cisco Unity Express (CUE) 2.2(2) and earlier, when running on any CUE Advanced Integration Module (AIM) or Network Module (NM), allows remote authenticated attackers to reset the password for any user with an expired password."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:H/Au:S/C:N/I:P/A:N",
"accessVector": "NETWORK",
"accessComplexity": "HIGH",
"authentication": "SINGLE",
"confidentialityImpact": "NONE",
"integrityImpact": "PARTIAL",
"availabilityImpact": "NONE",
"baseScore": 2.1
},
"baseSeverity": "LOW",
"exploitabilityScore": 3.9,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:cisco:unity_express_software:1.1.1:*:*:*:*:*:*:*",
"matchCriteriaId": "05328FC0-D20B-44AD-A72B-19D125553067"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:cisco:unity_express_software:2.1.1:*:*:*:*:*:*:*",
"matchCriteriaId": "31397846-474A-46B3-8210-ADC20B93E4A9"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:cisco:unity_express_software:2.2.2:*:*:*:*:*:*:*",
"matchCriteriaId": "68CE1AB1-1745-4C19-B3AC-72A033D69F87"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:h:cisco:unity_express:*:*:*:*:*:*:*:*",
"matchCriteriaId": "7583D706-3702-4571-BD2C-527E5337F6E1"
}
]
}
]
}
],
"references": [
{
"url": "http://securitytracker.com/id?1016015",
"source": "cve@mitre.org"
},
{
"url": "http://www.cisco.com/warp/public/707/cisco-sa-20060501-cue.shtml",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.securityfocus.com/bid/17775",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2006/1613",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/26165",
"source": "cve@mitre.org"
}
]
}