CVE-2013-1125
Summary
| CVE | CVE-2013-1125 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-02-19 23:55:00 UTC |
| Updated | 2013-02-20 05:00:00 UTC |
| Description | The command-line interface in Cisco Identity Services Engine Software, Secure Access Control System (ACS), Application Networking Manager (ANM), Prime LAN Management Solution (LMS), Prime Network Control System, Quad, Context Directory Agent, Prime Collaboration, Unified Provisioning Manager, and Network Services Manager does not properly validate input, which allows local users to obtain root privileges via unspecified vectors, aka Bug IDs CSCue46001, CSCud95790, CSCue46021, CSCue46025, CSCue46023, CSCue46058, CSCue46013, CSCue46031, CSCue46035, and CSCue46042. |
Risk And Classification
Problem Types: CWE-20
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Cisco | Application Networking Manager | - | All | All | All |
| Application | Cisco | Application Networking Manager | - | All | All | All |
| Application | Cisco | Context Directory Agent | - | All | All | All |
| Application | Cisco | Context Directory Agent | - | All | All | All |
| Application | Cisco | Identity Services Engine Software | - | All | All | All |
| Application | Cisco | Identity Services Engine Software | - | All | All | All |
| Application | Cisco | Network Services Manager | - | All | All | All |
| Application | Cisco | Network Services Manager | - | All | All | All |
| Application | Cisco | Prime Collaboration | - | All | All | All |
| Application | Cisco | Prime Collaboration | - | All | All | All |
| Application | Cisco | Prime Lan Management Solution | - | All | All | All |
| Application | Cisco | Prime Lan Management Solution | - | All | All | All |
| Application | Cisco | Prime Network Control System | - | All | All | All |
| Application | Cisco | Prime Network Control System | - | All | All | All |
| Application | Cisco | Quad | - | All | All | All |
| Application | Cisco | Quad | - | All | All | All |
| Application | Cisco | Secure Access Control System | - | All | All | All |
| Application | Cisco | Secure Access Control System | - | All | All | All |
| Application | Cisco | Unified Provisioning Manager | - | All | All | All |
| Application | Cisco | Unified Provisioning Manager | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Multiple Cisco Product Root Shell Access Vulnerability | CISCO | tools.cisco.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.