Lucene search

K
cveCiscoCVE-2013-1232
HistoryMay 04, 2013 - 3:24 a.m.

CVE-2013-1232

2013-05-0403:24:41
CWE-20
cisco
web.nvd.nist.gov
29
cisco
webex
node
http
implementation
vulnerability
cve-2013-1232
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.6

Confidence

Low

EPSS

0.002

Percentile

58.8%

The HTTP implementation in Cisco WebEx Node for MCS, WebEx Meetings Server, and WebEx Node for ASR 1000 Series allows remote attackers to read the contents of uninitialized memory locations via a crafted request, aka Bug IDs CSCue36672, CSCue31363, CSCuf17466, and CSCug61252.

Affected configurations

Nvd
Node
ciscowebex_meetings_serverMatch-
OR
ciscowebex_node_for_asr_1000_seriesMatch-
OR
ciscowebex_node_for_mcsMatch-
VendorProductVersionCPE
ciscowebex_node_for_mcs-cpe:/a:cisco:webex_node_for_mcs:-:::
ciscowebex_meetings_server-cpe:/a:cisco:webex_meetings_server:-:::
ciscowebex_node_for_asr_1000_series-cpe:/a:cisco:webex_node_for_asr_1000_series:-:::

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.6

Confidence

Low

EPSS

0.002

Percentile

58.8%

Related for CVE-2013-1232