10
CVSSv2

CVE-2009-1161

Published: 21/05/2009 Updated: 09/06/2009
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Directory traversal vulnerability in the TFTP service in Cisco CiscoWorks Common Services (CWCS) 3.0.x up to and including 3.2.x on Windows, as used in Cisco Unified Service Monitor, Security Manager, TelePresence Readiness Assessment Manager, Unified Operations Manager, Unified Provisioning Manager, and other products, allows remote malicious users to access arbitrary files via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ciscoworks common services 3.0.3

cisco ciscoworks common services 3.0.4

cisco ciscoworks common services 3.0.5

cisco ciscoworks common services 3.0.6

cisco ciscoworks common services 3.1

cisco ciscoworks common services 3.1.1

cisco ciscoworks common services 3.2

cisco ciscoworks health and utilization monitor 1.0

cisco ciscoworks health and utilization monitor 1.1

cisco ciscoworks lan management solution 2.5

cisco ciscoworks lan management solution 2.6

cisco ciscoworks lan management solution 3.0

cisco ciscoworks lan management solution 3.1

cisco ciscoworks qos policy manager 4.0

cisco ciscoworks qos policy manager 4.1

cisco ciscoworks voice manager 3.0

cisco ciscoworks voice manager 3.1

cisco security manager 3.0

cisco security manager 3.1

cisco security manager 3.2

cisco telepresence readiness assessment manager 1.0

cisco unified operations manager 1.0

cisco unified operations manager 1.1

cisco unified operations manager 2.0

cisco unified operations manager 2.1

cisco unified provisioning manager 1.0

cisco unified provisioning manager 1.1

cisco unified provisioning manager 1.2

cisco unified provisioning manager 1.3

cisco unified service monitor 1.0

cisco unified service monitor 1.1

cisco unified service monitor 2.0

cisco unified service monitor 2.1