Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-0391

Опубликовано: 01 авг. 2018
Источник: nvd
CVSS3: 6.5
CVSS2: 6.8
EPSS Низкий

Описание

A vulnerability in the password change function of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker to cause the system to become inoperable. The vulnerability is due to insufficient validation of a password change request. An attacker could exploit this vulnerability by changing a specific administrator account password. A successful exploit could allow the attacker to cause the affected device to become inoperable, resulting in a denial of service (DoS) condition. This vulnerability affects Cisco Prime Collaboration Provisioning (PCP) Releases 12.2 and prior. Cisco Bug IDs: CSCvd86586.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:cisco:prime_collaboration:12.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:prime_collaboration_provisioning:*:*:*:*:*:*:*:*
Версия до 12.2 (включая)

EPSS

Процентиль: 63%
0.00444
Низкий

6.5 Medium

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-285
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 6.5
github
больше 3 лет назад

A vulnerability in the password change function of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker to cause the system to become inoperable. The vulnerability is due to insufficient validation of a password change request. An attacker could exploit this vulnerability by changing a specific administrator account password. A successful exploit could allow the attacker to cause the affected device to become inoperable, resulting in a denial of service (DoS) condition. This vulnerability affects Cisco Prime Collaboration Provisioning (PCP) Releases 12.2 and prior. Cisco Bug IDs: CSCvd86586.

CVSS3: 8.1
fstec
больше 7 лет назад

Уязвимость функции смены пароля программного средства Cisco Prime Collaboration Provisioning для централизованного управления продуктами Cisco, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 63%
0.00444
Низкий

6.5 Medium

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-285
NVD-CWE-noinfo