CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
SINGLE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:L/Au:S/C:C/I:C/A:C
AI Score
Confidence
Low
EPSS
Percentile
61.5%
Directory traversal vulnerability in Cisco Application Networking Manager (ANM) before 2.0 and Application Control Engine (ACE) Device Manager before A3(2.1) allows remote authenticated users to read or modify arbitrary files via unspecified vectors, related to “invalid directory permissions.”
Vendor | Product | Version | CPE |
---|---|---|---|
cisco | application_control_engine_device_manager | * | cpe:2.3:a:cisco:application_control_engine_device_manager:*:*:*:*:*:*:*:* |
cisco | application_control_engine_device_manager | 1.1 | cpe:2.3:a:cisco:application_control_engine_device_manager:1.1:*:*:*:*:*:*:* |
cisco | application_networking_manager | * | cpe:2.3:a:cisco:application_networking_manager:*:*:*:*:*:*:*:* |
cisco | application_networking_manager | 1.1 | cpe:2.3:a:cisco:application_networking_manager:1.1:*:*:*:*:*:*:* |