7.5
CVSSv2

CVE-2003-0974

Published: 15/12/2003 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Applied Watch Command Center allows remote malicious users to conduct unauthorized activities without authentication, such as (1) add new users to a console, as demonstrated using appliedsnatch.c, or (2) add spurious IDS rules to sensors, as demonstrated using addrule.c.

Vulnerable Product Search on Vulmon Subscribe to Product

applied watch technologies applied watch command center 1.0

Exploits

source: wwwsecurityfocuscom/bid/9124/info A vulnerability has been identified in the system that may allow an attacker to bypass authentication to add attacker supplied IDS alerts and new user accounts in the console Successful exploitation of these issues may allow an attacker to gain unauthorized access to a vulnerable system or conce ...
source: wwwsecurityfocuscom/bid/9124/info A vulnerability has been identified in the system that may allow an attacker to bypass authentication to add attacker supplied IDS alerts and new user accounts in the console Successful exploitation of these issues may allow an attacker to gain unauthorized access to a vulnerable system or concea ...