Cisco Video Surveillance Manager CVE-2013-3430 Remote Authentication Bypass Vulnerability
BID:61432
Info
Cisco Video Surveillance Manager CVE-2013-3430 Remote Authentication Bypass Vulnerability
| Bugtraq ID: | 61432 |
| Class: | Access Validation Error |
| CVE: |
CVE-2013-3430 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 24 2013 12:00AM |
| Updated: | Jul 25 2013 06:44AM |
| Credit: | Cisco |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Cisco Video Surveillance Manager CVE-2013-3430 Remote Authentication Bypass Vulnerability
Cisco Video Surveillance Manager is prone to a remote authentication-bypass vulnerability.
An attacker can exploit this issue to bypass the authentication mechanism and gain administrative controls of the vulnerable device. This may lead to further attacks.
This issue is tracked by Cisco Bug ID CSCsv37288.
Versions prior to Cisco Video Surveillance Manager 7.0.0 are vulnerable.
Cisco Video Surveillance Manager is prone to a remote authentication-bypass vulnerability.
An attacker can exploit this issue to bypass the authentication mechanism and gain administrative controls of the vulnerable device. This may lead to further attacks.
This issue is tracked by Cisco Bug ID CSCsv37288.
Versions prior to Cisco Video Surveillance Manager 7.0.0 are vulnerable.
Exploit / POC
Cisco Video Surveillance Manager CVE-2013-3430 Remote Authentication Bypass Vulnerability
An attacker can exploit this issue using readily available tools.
An attacker can exploit this issue using readily available tools.
Solution / Fix
Cisco Video Surveillance Manager CVE-2013-3430 Remote Authentication Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Cisco Video Surveillance Manager CVE-2013-3430 Remote Authentication Bypass Vulnerability
References:
References:
- Cisco Homepage (Cisco )