Lucene search

K
nvd[email protected]NVD:CVE-2004-0044
HistoryFeb 03, 2004 - 5:00 a.m.

CVE-2004-0044

2004-02-0305:00:00
web.nvd.nist.gov
3

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.3

Confidence

Low

EPSS

0.007

Percentile

80.2%

Cisco Personal Assistant 1.4(1) and 1.4(2) disables password authentication when “Allow Only Cisco CallManager Users” is enabled and the Corporate Directory settings refer to the directory service being used by Cisco CallManager, which allows remote attackers to gain access with a valid username.

Affected configurations

Nvd
Node
ciscopersonal_assistantMatch1.4\(1\)
OR
ciscopersonal_assistantMatch1.4\(2\)
VendorProductVersionCPE
ciscopersonal_assistant1.4(1)cpe:2.3:a:cisco:personal_assistant:1.4\(1\):*:*:*:*:*:*:*
ciscopersonal_assistant1.4(2)cpe:2.3:a:cisco:personal_assistant:1.4\(2\):*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.3

Confidence

Low

EPSS

0.007

Percentile

80.2%

Related for NVD:CVE-2004-0044