Lucene search

K
cveCiscoCVE-2015-4327
HistoryAug 20, 2015 - 12:59 a.m.

CVE-2015-4327

2015-08-2000:59:04
CWE-20
cisco
web.nvd.nist.gov
35
cisco
vcs
expressway
x8.5.2
cli
vulnerability
cve-2015-4327
cscuv12542
nvd

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.4

Confidence

Low

EPSS

0

Percentile

5.1%

The CLI in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows local users to obtain root privileges by writing script arguments to an unspecified file, aka Bug ID CSCuv12542.

Affected configurations

Nvd
Node
ciscotelepresence_video_communication_server_softwareMatchx8.5.2expressway
VendorProductVersionCPE
ciscotelepresence_video_communication_server_softwarex8.5.2cpe:2.3:a:cisco:telepresence_video_communication_server_software:x8.5.2:*:*:*:expressway:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.4

Confidence

Low

EPSS

0

Percentile

5.1%

Related for CVE-2015-4327