4.3
CVSSv2

CVE-2014-0654

Published: 08/01/2014 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cisco Context Directory Agent (CDA) allows remote malicious users to modify the cache via a replay attack involving crafted RADIUS accounting messages, aka Bug ID CSCuj45383.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco context directory agent -

Vendor Advisories

A vulnerability in RADIUS message processing of Cisco Context Directory Agent (CDA) could allow an unauthenticated, remote attacker to affect the contents of the CDA cache The vulnerability is due to insufficient validation of RADIUS accounting messages An attacker could exploit this vulnerability by replaying crafted RADIUS accounting messages ...