2024-12-08 03:06:42 +00:00

113 lines
3.2 KiB
JSON

{
"id": "CVE-2015-7770",
"sourceIdentifier": "vultures@jpcert.or.jp",
"published": "2015-11-06T11:59:05.807",
"lastModified": "2024-11-21T02:37:22.537",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Dell SonicWall TotalSecure TZ 100 devices with firmware before 5.9.1.0-22o allow remote attackers to cause a denial of service via a crafted packet."
},
{
"lang": "es",
"value": "La configuraci\u00f3n por defecto de sshd_config en Cisco Mobility Services Engine (MSE) hasta la versi\u00f3n 8.0.120.7 permite inicios de sesi\u00f3n mediante la cuenta oracle, lo que hace que sea m\u00e1s f\u00e1cil para atacantes remotos obtener acceso mediante la introducci\u00f3n de la contrase\u00f1a embebida de esta cuenta en una sesi\u00f3n SSH, tambi\u00e9n conocido como Bug ID CSCuv40501."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
"baseScore": 5.0,
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"availabilityImpact": "PARTIAL"
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-20"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:dell:sonicwall_totalsecure_tz_100_firmware:*:*:*:*:*:*:*:*",
"versionEndIncluding": "5.9.1.0",
"matchCriteriaId": "38AD68D6-1FD2-4B4C-9404-118C6323DB01"
}
]
}
]
}
],
"references": [
{
"url": "http://jvn.jp/en/jp/JVN90135579/index.html",
"source": "vultures@jpcert.or.jp",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://jvndb.jvn.jp/jvndb/JVNDB-2015-000176",
"source": "vultures@jpcert.or.jp",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.securitytracker.com/id/1034092",
"source": "vultures@jpcert.or.jp"
},
{
"url": "http://jvn.jp/en/jp/JVN90135579/index.html",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://jvndb.jvn.jp/jvndb/JVNDB-2015-000176",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.securitytracker.com/id/1034092",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}