7.5
CVSSv2

CVE-2018-0377

Published: 18/07/2018 Updated: 09/10/2019
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

A vulnerability in the Open Systems Gateway initiative (OSGi) interface of Cisco Policy Suite prior to 18.1.0 could allow an unauthenticated, remote malicious user to directly connect to the OSGi interface. The vulnerability is due to a lack of authentication. An attacker could exploit this vulnerability by directly connecting to the OSGi interface. An exploit could allow the malicious user to access or change any files that are accessible by the OSGi process. Cisco Bug IDs: CSCvh18017.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco mobility services engine 14.0.0

cisco policy suite

Vendor Advisories

A vulnerability in the Open Systems Gateway initiative (OSGi) interface of Cisco Policy Suite could allow an unauthenticated, remote attacker to directly connect to the OSGi interface The vulnerability is due to a lack of authentication An attacker could exploit this vulnerability by directly connecting to the OSGi interface An exploit could all ...