Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-2738

Опубликовано: 19 сент. 2011
Источник: nvd
CVSS2: 10
EPSS Средний

Описание

Multiple unspecified vulnerabilities in Cisco Unified Service Monitor before 8.6, as used in Unified Operations Manager before 8.6 and CiscoWorks LAN Management Solution 3.x and 4.x before 4.1; and multiple EMC Ionix products including Application Connectivity Monitor (Ionix ACM) 2.3 and earlier, Adapter for Alcatel-Lucent 5620 SAM EMS (Ionix ASAM) 3.2.0.2 and earlier, IP Management Suite (Ionix IP) 8.1.1.1 and earlier, and other Ionix products; allow remote attackers to execute arbitrary code via crafted packets to TCP port 9002, aka Bug IDs CSCtn42961 and CSCtn64922, related to a buffer overflow.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:a:cisco:unified_service_monitor:*:*:*:*:*:*:*:*
Версия до 8.5 (включая)
cpe:2.3:a:cisco:unified_service_monitor:1.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_service_monitor:2.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_service_monitor:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_service_monitor:2.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_service_monitor:2.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_service_monitor:2.3:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_service_monitor:8.0:*:*:*:*:*:*:*

Одно из

cpe:2.3:a:cisco:ciscoworks_lan_management_solution:3.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:ciscoworks_lan_management_solution:3.0:december_2007:*:*:*:*:*:*
cpe:2.3:a:cisco:ciscoworks_lan_management_solution:3.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:ciscoworks_lan_management_solution:3.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:ciscoworks_lan_management_solution:4.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:ciscoworks_lan_management_solution:4.0.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_operations_manager:*:*:*:*:*:*:*:*
Версия до 8.5 (включая)
cpe:2.3:a:cisco:unified_operations_manager:1.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_operations_manager:1.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_operations_manager:2.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_operations_manager:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_operations_manager:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_operations_manager:2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_operations_manager:2.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_operations_manager:2.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_operations_manager:2.3:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_operations_manager:8.0:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:emc:ionix_acm:*:*:*:*:*:*:*:*
Версия до 2.3 (включая)
cpe:2.3:a:emc:ionix_asam:*:*:*:*:*:*:*:*
Версия до 3.2.0.2 (включая)
cpe:2.3:a:emc:ionix_ip:*:*:*:*:*:*:*:*
Версия до 8.1.1.1 (включая)

EPSS

Процентиль: 93%
0.11327
Средний

10 Critical

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

Multiple unspecified vulnerabilities in Cisco Unified Service Monitor before 8.6, as used in Unified Operations Manager before 8.6 and CiscoWorks LAN Management Solution 3.x and 4.x before 4.1; and multiple EMC Ionix products including Application Connectivity Monitor (Ionix ACM) 2.3 and earlier, Adapter for Alcatel-Lucent 5620 SAM EMS (Ionix ASAM) 3.2.0.2 and earlier, IP Management Suite (Ionix IP) 8.1.1.1 and earlier, and other Ionix products; allow remote attackers to execute arbitrary code via crafted packets to TCP port 9002, aka Bug IDs CSCtn42961 and CSCtn64922, related to a buffer overflow.

EPSS

Процентиль: 93%
0.11327
Средний

10 Critical

CVSS2

Дефекты

NVD-CWE-noinfo