2025-01-26 03:03:52 +00:00

98 lines
2.8 KiB
JSON

{
"id": "CVE-2015-0673",
"sourceIdentifier": "psirt@cisco.com",
"published": "2015-03-26T10:59:16.503",
"lastModified": "2024-11-21T02:23:30.773",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Cisco Mobility Services Engine (MSE) 8.0(110.0) allows remote authenticated users to discover the passwords of arbitrary users by (1) reading log files or (2) using an unspecified GUI feature, aka Bug ID CSCut24792."
},
{
"lang": "es",
"value": "Cisco Mobility Services Engine (MSE) 8.0(110.0) permite a usuarios remotos autenticados descubrir las contrase\u00f1as de usuarios arbitrarios mediante (1) la lectura de ficheros de registros o (2) el uso de una caracter\u00edstica de la GUI no especificada, tambi\u00e9n conocido como Bug ID CSCut24792."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:S/C:P/I:N/A:N",
"baseScore": 4.0,
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "SINGLE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE"
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.0,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-200"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:h:cisco:mobility_services_engine:8.0\\(110.0\\):*:*:*:*:*:*:*",
"matchCriteriaId": "8EBDC0B5-1FB5-4C5B-97AA-6ADD5D351924"
}
]
}
]
}
],
"references": [
{
"url": "http://tools.cisco.com/security/center/viewAlert.x?alertId=38007",
"source": "psirt@cisco.com",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.securitytracker.com/id/1031971",
"source": "psirt@cisco.com"
},
{
"url": "http://tools.cisco.com/security/center/viewAlert.x?alertId=38007",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.securitytracker.com/id/1031971",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}