Lucene search

K
cveCiscoCVE-2015-0666
HistoryApr 03, 2015 - 10:59 a.m.

CVE-2015-0666

2015-04-0310:59:04
CWE-22
cisco
web.nvd.nist.gov
843
In Wild
cve-2015-0666
directory traversal
vulnerability
cisco prime
dcnm
nvd

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.973

Percentile

99.9%

Directory traversal vulnerability in the fmserver servlet in Cisco Prime Data Center Network Manager (DCNM) before 7.1(1) allows remote attackers to read arbitrary files via a crafted pathname, aka Bug ID CSCus00241.

Affected configurations

Nvd
Node
ciscoprime_data_center_network_managerRange7.0\(2\)
OR
ciscoprime_data_center_network_managerMatch6.3\(1\)
OR
ciscoprime_data_center_network_managerMatch6.3\(2\)
OR
ciscoprime_data_center_network_managerMatch7.0\(1\)
VendorProductVersionCPE
ciscoprime_data_center_network_manager*cpe:2.3:a:cisco:prime_data_center_network_manager:*:*:*:*:*:*:*:*
ciscoprime_data_center_network_manager6.3(1)cpe:2.3:a:cisco:prime_data_center_network_manager:6.3\(1\):*:*:*:*:*:*:*
ciscoprime_data_center_network_manager6.3(2)cpe:2.3:a:cisco:prime_data_center_network_manager:6.3\(2\):*:*:*:*:*:*:*
ciscoprime_data_center_network_manager7.0(1)cpe:2.3:a:cisco:prime_data_center_network_manager:7.0\(1\):*:*:*:*:*:*:*

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.973

Percentile

99.9%