4.3
CVSSv2

CVE-2014-8006

Published: 17/12/2014 Updated: 17/12/2014
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The Disaster Recovery (DRA) feature on the Cisco ISB8320-E High-Definition IP-Only DVR allows remote malicious users to bypass authentication by establishing a TELNET session during a recovery boot, aka Bug ID CSCup85422.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco isb8320-e high-definition ip-only dvr -

Vendor Advisories

An issue in Disaster Recovery (DRA) mode of the Cisco ISB8320-E High-Definition IP-Only DVR could allow an unauthenticated, remote attacker to access the device via telnet without authentication for the duration of the recovery boot The issue is due to the disaster recovery process An attacker could exploit this vulnerability by attempting to ac ...