CVE-2014-3338
The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is enabled, does not properly validate Kerberos SSO tokens, which allows remote authenticated users to gain privileges and execute arbitrary commands via…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (3.12%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is enabled, does not properly validate Kerberos SSO tokens, which allows remote authenticated users to gain privileges and execute arbitrary commands via crafted token data, aka Bug ID CSCum95491.
- CVSS 2.0
- 8.5 HIGHAV:N/AC:M/Au:S/C:C/I:C/A:C
- EPSS
- 3.12% probability · 87th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- cisco/unified communications manager
- Source
- psirt@cisco.com
References
- http://secunia.com/advisories/60054
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3338Vendor Advisory
- http://tools.cisco.com/security/center/viewAlert.x?alertId=35258Vendor Advisory
- http://www.securityfocus.com/bid/69176
- http://www.securitytracker.com/id/1030710
- https://exchange.xforce.ibmcloud.com/vulnerabilities/95246
- http://secunia.com/advisories/60054
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3338Vendor Advisory
- http://tools.cisco.com/security/center/viewAlert.x?alertId=35258Vendor Advisory
- http://www.securityfocus.com/bid/69176
- http://www.securitytracker.com/id/1030710
- https://exchange.xforce.ibmcloud.com/vulnerabilities/95246
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.