10
CVSSv2

CVE-2009-1161

Published: 21/05/2009 Updated: 09/06/2009
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Directory traversal vulnerability in the TFTP service in Cisco CiscoWorks Common Services (CWCS) 3.0.x up to and including 3.2.x on Windows, as used in Cisco Unified Service Monitor, Security Manager, TelePresence Readiness Assessment Manager, Unified Operations Manager, Unified Provisioning Manager, and other products, allows remote malicious users to access arbitrary files via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ciscoworks_common_services 3.1

cisco ciscoworks_common_services 3.1.1

cisco ciscoworks_common_services 3.2

cisco ciscoworks_common_services 3.0.3

cisco ciscoworks_common_services 3.0.4

cisco ciscoworks_common_services 3.0.5

cisco ciscoworks_common_services 3.0.6

cisco unified_service_monitor 1.1

cisco unified_service_monitor 2.0

cisco ciscoworks_lan_management_solution 3.1

cisco security_manager 3.0

cisco ciscoworks_health_and_utilization_monitor 1.1

cisco unified_operations_manager 1.0

cisco unified_service_monitor 1.0

cisco ciscoworks_lan_management_solution 2.6

cisco unified_service_monitor 2.1

cisco ciscoworks_qos_policy_manager 4.0

cisco security_manager 3.2

cisco security_manager 3.1

cisco unified_operations_manager 1.1

cisco unified_operations_manager 2.0

cisco ciscoworks_lan_management_solution 3.0

cisco ciscoworks_voice_manager 3.1

cisco ciscoworks_health_and_utilization_monitor 1.0

cisco unified_provisioning_manager 1.2

cisco unified_provisioning_manager 1.3

cisco ciscoworks_qos_policy_manager 4.1

cisco ciscoworks_lan_management_solution 2.5

cisco telepresence_readiness_assessment_manager 1.0

cisco ciscoworks_voice_manager 3.0

cisco unified_operations_manager 2.1

cisco unified_provisioning_manager 1.0

cisco unified_provisioning_manager 1.1