Lucene search

K
cveCiscoCVE-2013-3444
HistoryAug 01, 2013 - 1:32 p.m.

CVE-2013-3444

2013-08-0113:32:30
CWE-78
cisco
web.nvd.nist.gov
26
cisco
waas
acns
ecds
cds-is
vds-is
vds-sb
vds-oe
vds-os
security vulnerability
remote execution
cve-2013-3444
nvd

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.005

Percentile

76.3%

The web framework in Cisco WAAS Software before 4.x and 5.x before 5.0.3e, 5.1.x before 5.1.1c, and 5.2.x before 5.2.1; Cisco ACNS Software 4.x and 5.x before 5.5.29.2; Cisco ECDS Software 2.x before 2.5.6; Cisco CDS-IS Software 2.x before 2.6.3.b50 and 3.1.x before 3.1.2b54; Cisco VDS-IS Software 3.2.x before 3.2.1.b9; Cisco VDS-SB Software 1.x before 1.1.0-b96; Cisco VDS-OE Software 1.x before 1.0.1; and Cisco VDS-OS Software 1.x in central-management mode allows remote authenticated users to execute arbitrary commands by appending crafted strings to values in GUI fields, aka Bug IDs CSCug40609, CSCug48855, CSCug48921, CSCug48872, CSCuh21103, CSCuh21020, and CSCug56790.

Affected configurations

Nvd
Node
ciscowide_area_application_servicesMatch4.1.1
OR
ciscowide_area_application_servicesMatch4.1.1a
OR
ciscowide_area_application_servicesMatch4.1.1b
OR
ciscowide_area_application_servicesMatch4.1.1c
OR
ciscowide_area_application_servicesMatch4.1.1d
OR
ciscowide_area_application_servicesMatch4.1.3
OR
ciscowide_area_application_servicesMatch4.1.3a
OR
ciscowide_area_application_servicesMatch4.1.3b
OR
ciscowide_area_application_servicesMatch4.1.5a
OR
ciscowide_area_application_servicesMatch4.1.5b
OR
ciscowide_area_application_servicesMatch4.1.5c
OR
ciscowide_area_application_servicesMatch4.1.5d
OR
ciscowide_area_application_servicesMatch4.1.5e
OR
ciscowide_area_application_servicesMatch4.1.5f
OR
ciscowide_area_application_servicesMatch4.1.5g
OR
ciscowide_area_application_servicesMatch4.1.7
OR
ciscowide_area_application_servicesMatch4.1.7a
OR
ciscowide_area_application_servicesMatch4.1.7b
Node
ciscowide_area_application_servicesMatch4.3.1
OR
ciscowide_area_application_servicesMatch4.3.3
OR
ciscowide_area_application_servicesMatch4.3.5
OR
ciscowide_area_application_servicesMatch4.3.5a
Node
ciscowide_area_application_servicesMatch5.0.1
OR
ciscowide_area_application_servicesMatch5.0.3
OR
ciscowide_area_application_servicesMatch5.0.3a
OR
ciscowide_area_application_servicesMatch5.0.3c
OR
ciscowide_area_application_servicesMatch5.0.3d
Node
ciscowide_area_application_servicesMatch4.2.1
OR
ciscowide_area_application_servicesMatch4.2.3
OR
ciscowide_area_application_servicesMatch4.2.3a
OR
ciscowide_area_application_servicesMatch4.2.3b
OR
ciscowide_area_application_servicesMatch4.2.3c
Node
ciscowide_area_application_servicesMatch4.4.1
OR
ciscowide_area_application_servicesMatch4.4.3
OR
ciscowide_area_application_servicesMatch4.4.3a
OR
ciscowide_area_application_servicesMatch4.4.3b
OR
ciscowide_area_application_servicesMatch4.4.3c
OR
ciscowide_area_application_servicesMatch4.4.5
OR
ciscowide_area_application_servicesMatch4.4.5a
OR
ciscowide_area_application_servicesMatch4.4.5b
OR
ciscowide_area_application_servicesMatch4.4.5c
OR
ciscowide_area_application_servicesMatch4.4.5d
OR
ciscowide_area_application_servicesMatch4.4.7
Node
ciscowide_area_application_servicesMatch5.1.1
OR
ciscowide_area_application_servicesMatch5.1.1a
OR
ciscowide_area_application_servicesMatch5.1.1b
Node
ciscowide_area_application_servicesMatch5.2
Node
ciscowide_area_application_servicesMatch4.0.1
OR
ciscowide_area_application_servicesMatch4.0.3
OR
ciscowide_area_application_servicesMatch4.0.5
OR
ciscowide_area_application_servicesMatch4.0.7
OR
ciscowide_area_application_servicesMatch4.0.9
OR
ciscowide_area_application_servicesMatch4.0.11
OR
ciscowide_area_application_servicesMatch4.0.13
OR
ciscowide_area_application_servicesMatch4.0.17
OR
ciscowide_area_application_servicesMatch4.0.19
OR
ciscowide_area_application_servicesMatch4.0.21
OR
ciscowide_area_application_servicesMatch4.0.23
OR
ciscowide_area_application_servicesMatch4.0.25
OR
ciscowide_area_application_servicesMatch4.0.27
Node
ciscoapplication_and_content_networking_system_softwareMatch4.1.3
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.3
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.5
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.7.3
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.9.3
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.11.5
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.13.1
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.1
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.3.5
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.5.9
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.7.10
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.9.9
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.11.6
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.13.2
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.15.1
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.17.6
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.1.3
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.3.15
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.5.2
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.7.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.9.5
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.11.6
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.13.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.15.5
OR
ciscoapplication_and_content_networking_system_softwareMatch5.4
OR
ciscoapplication_and_content_networking_system_softwareMatch5.4.1.10
OR
ciscoapplication_and_content_networking_system_softwareMatch5.4.3.17
OR
ciscoapplication_and_content_networking_system_softwareMatch5.4.5.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.4.7.3
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.1.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.3.1
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.5.4
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.7.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.9.9
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.11.2
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.13.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.15.2
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.17
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.19
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.21
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.23
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.25
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.27
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.29
OR
ciscoenterprise_content_delivery_network_softwareMatch2.0
OR
ciscoenterprise_content_delivery_network_softwareMatch2.5.3
OR
ciscoenterprise_content_delivery_network_softwareMatch2.5.5
OR
ciscointernet_streamer_content_delivery_systemMatch2.0
OR
ciscointernet_streamer_content_delivery_systemMatch2.6
OR
ciscointernet_streamer_content_delivery_systemMatch3.1
OR
ciscovideoscape_delivery_system_for_internet_streamerMatch1.0.0
OR
ciscovideoscape_delivery_system_for_internet_streamerMatch3.2.0
OR
ciscovideoscape_delivery_system_for_internet_streamerMatch3.2.1
OR
ciscovideoscape_delivery_system_origin_serverMatch1.0
OR
ciscovideoscape_distribution_suite_optimization_engineMatch1.0.0
OR
ciscovideoscape_distribution_suite_service_brokerMatch1.0.0
OR
ciscovideoscape_distribution_suite_service_brokerMatch1.0.1
OR
ciscovideoscape_distribution_suite_service_brokerMatch1.1.0
VendorProductVersionCPE
ciscowide_area_application_services4.1.7cpe:/a:cisco:wide_area_application_services:4.1.7:a::
ciscowide_area_application_services4.1.7cpe:/a:cisco:wide_area_application_services:4.1.7:::
ciscowide_area_application_services4.1.5cpe:/a:cisco:wide_area_application_services:4.1.5:d::
ciscowide_area_application_services4.1.5cpe:/a:cisco:wide_area_application_services:4.1.5:c::
ciscowide_area_application_services4.1.5cpe:/a:cisco:wide_area_application_services:4.1.5:a::
ciscowide_area_application_services4.1.1cpe:/a:cisco:wide_area_application_services:4.1.1:d::
ciscowide_area_application_services4.1.5cpe:/a:cisco:wide_area_application_services:4.1.5:b::
ciscowide_area_application_services4.1.1cpe:/a:cisco:wide_area_application_services:4.1.1:::
ciscowide_area_application_services4.1.5cpe:/a:cisco:wide_area_application_services:4.1.5:f::
ciscowide_area_application_services4.1.5cpe:/a:cisco:wide_area_application_services:4.1.5:e::
Rows per page:
1-10 of 181

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.005

Percentile

76.3%