Lucene search

K
cveCiscoCVE-2014-2196
HistoryMay 26, 2014 - 12:25 a.m.

CVE-2014-2196

2014-05-2600:25:31
CWE-94
cisco
web.nvd.nist.gov
32
cisco
waas
cve-2014-2196
remote code execution
sharepoint
bug id
cscue18479

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.004

Percentile

72.4%

Cisco Wide Area Application Services (WAAS) 5.1.1 before 5.1.1e, when SharePoint prefetch optimization is enabled, allows remote SharePoint servers to execute arbitrary code via a malformed response, aka Bug ID CSCue18479.

Affected configurations

Nvd
Node
ciscowide_area_application_servicesMatch5.1.1
OR
ciscowide_area_application_servicesMatch5.1.1a
OR
ciscowide_area_application_servicesMatch5.1.1b
OR
ciscowide_area_application_servicesMatch5.1.1c
OR
ciscowide_area_application_servicesMatch5.1.1d
VendorProductVersionCPE
ciscowide_area_application_services5.1.1cpe:2.3:a:cisco:wide_area_application_services:5.1.1:*:*:*:*:*:*:*
ciscowide_area_application_services5.1.1cpe:2.3:a:cisco:wide_area_application_services:5.1.1:a:*:*:*:*:*:*
ciscowide_area_application_services5.1.1cpe:2.3:a:cisco:wide_area_application_services:5.1.1:b:*:*:*:*:*:*
ciscowide_area_application_services5.1.1cpe:2.3:a:cisco:wide_area_application_services:5.1.1:c:*:*:*:*:*:*
ciscowide_area_application_services5.1.1cpe:2.3:a:cisco:wide_area_application_services:5.1.1:d:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.004

Percentile

72.4%