Lucene search

K
nvd[email protected]NVD:CVE-2013-3444
HistoryAug 01, 2013 - 1:32 p.m.

CVE-2013-3444

2013-08-0113:32:30
CWE-78
web.nvd.nist.gov
2

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.2

Confidence

High

EPSS

0.005

Percentile

76.3%

The web framework in Cisco WAAS Software before 4.x and 5.x before 5.0.3e, 5.1.x before 5.1.1c, and 5.2.x before 5.2.1; Cisco ACNS Software 4.x and 5.x before 5.5.29.2; Cisco ECDS Software 2.x before 2.5.6; Cisco CDS-IS Software 2.x before 2.6.3.b50 and 3.1.x before 3.1.2b54; Cisco VDS-IS Software 3.2.x before 3.2.1.b9; Cisco VDS-SB Software 1.x before 1.1.0-b96; Cisco VDS-OE Software 1.x before 1.0.1; and Cisco VDS-OS Software 1.x in central-management mode allows remote authenticated users to execute arbitrary commands by appending crafted strings to values in GUI fields, aka Bug IDs CSCug40609, CSCug48855, CSCug48921, CSCug48872, CSCuh21103, CSCuh21020, and CSCug56790.

Affected configurations

Nvd
Node
ciscowide_area_application_servicesMatch4.1.1
OR
ciscowide_area_application_servicesMatch4.1.1a
OR
ciscowide_area_application_servicesMatch4.1.1b
OR
ciscowide_area_application_servicesMatch4.1.1c
OR
ciscowide_area_application_servicesMatch4.1.1d
OR
ciscowide_area_application_servicesMatch4.1.3
OR
ciscowide_area_application_servicesMatch4.1.3a
OR
ciscowide_area_application_servicesMatch4.1.3b
OR
ciscowide_area_application_servicesMatch4.1.5a
OR
ciscowide_area_application_servicesMatch4.1.5b
OR
ciscowide_area_application_servicesMatch4.1.5c
OR
ciscowide_area_application_servicesMatch4.1.5d
OR
ciscowide_area_application_servicesMatch4.1.5e
OR
ciscowide_area_application_servicesMatch4.1.5f
OR
ciscowide_area_application_servicesMatch4.1.5g
OR
ciscowide_area_application_servicesMatch4.1.7
OR
ciscowide_area_application_servicesMatch4.1.7a
OR
ciscowide_area_application_servicesMatch4.1.7b
Node
ciscowide_area_application_servicesMatch4.3.1
OR
ciscowide_area_application_servicesMatch4.3.3
OR
ciscowide_area_application_servicesMatch4.3.5
OR
ciscowide_area_application_servicesMatch4.3.5a
Node
ciscowide_area_application_servicesMatch5.0.1
OR
ciscowide_area_application_servicesMatch5.0.3
OR
ciscowide_area_application_servicesMatch5.0.3a
OR
ciscowide_area_application_servicesMatch5.0.3c
OR
ciscowide_area_application_servicesMatch5.0.3d
Node
ciscowide_area_application_servicesMatch4.2.1
OR
ciscowide_area_application_servicesMatch4.2.3
OR
ciscowide_area_application_servicesMatch4.2.3a
OR
ciscowide_area_application_servicesMatch4.2.3b
OR
ciscowide_area_application_servicesMatch4.2.3c
Node
ciscowide_area_application_servicesMatch4.4.1
OR
ciscowide_area_application_servicesMatch4.4.3
OR
ciscowide_area_application_servicesMatch4.4.3a
OR
ciscowide_area_application_servicesMatch4.4.3b
OR
ciscowide_area_application_servicesMatch4.4.3c
OR
ciscowide_area_application_servicesMatch4.4.5
OR
ciscowide_area_application_servicesMatch4.4.5a
OR
ciscowide_area_application_servicesMatch4.4.5b
OR
ciscowide_area_application_servicesMatch4.4.5c
OR
ciscowide_area_application_servicesMatch4.4.5d
OR
ciscowide_area_application_servicesMatch4.4.7
Node
ciscowide_area_application_servicesMatch5.1.1
OR
ciscowide_area_application_servicesMatch5.1.1a
OR
ciscowide_area_application_servicesMatch5.1.1b
Node
ciscowide_area_application_servicesMatch5.2
Node
ciscowide_area_application_servicesMatch4.0.1
OR
ciscowide_area_application_servicesMatch4.0.3
OR
ciscowide_area_application_servicesMatch4.0.5
OR
ciscowide_area_application_servicesMatch4.0.7
OR
ciscowide_area_application_servicesMatch4.0.9
OR
ciscowide_area_application_servicesMatch4.0.11
OR
ciscowide_area_application_servicesMatch4.0.13
OR
ciscowide_area_application_servicesMatch4.0.17
OR
ciscowide_area_application_servicesMatch4.0.19
OR
ciscowide_area_application_servicesMatch4.0.21
OR
ciscowide_area_application_servicesMatch4.0.23
OR
ciscowide_area_application_servicesMatch4.0.25
OR
ciscowide_area_application_servicesMatch4.0.27
Node
ciscoapplication_and_content_networking_system_softwareMatch4.1.3
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.3
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.5
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.7.3
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.9.3
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.11.5
OR
ciscoapplication_and_content_networking_system_softwareMatch4.2.13.1
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.1
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.3.5
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.5.9
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.7.10
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.9.9
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.11.6
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.13.2
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.15.1
OR
ciscoapplication_and_content_networking_system_softwareMatch5.0.17.6
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.1.3
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.3.15
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.5.2
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.7.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.9.5
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.11.6
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.13.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.1.15.5
OR
ciscoapplication_and_content_networking_system_softwareMatch5.4
OR
ciscoapplication_and_content_networking_system_softwareMatch5.4.1.10
OR
ciscoapplication_and_content_networking_system_softwareMatch5.4.3.17
OR
ciscoapplication_and_content_networking_system_softwareMatch5.4.5.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.4.7.3
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.1.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.3.1
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.5.4
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.7.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.9.9
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.11.2
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.13.7
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.15.2
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.17
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.19
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.21
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.23
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.25
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.27
OR
ciscoapplication_and_content_networking_system_softwareMatch5.5.29
OR
ciscoenterprise_content_delivery_network_softwareMatch2.0
OR
ciscoenterprise_content_delivery_network_softwareMatch2.5.3
OR
ciscoenterprise_content_delivery_network_softwareMatch2.5.5
OR
ciscointernet_streamer_content_delivery_systemMatch2.0
OR
ciscointernet_streamer_content_delivery_systemMatch2.6
OR
ciscointernet_streamer_content_delivery_systemMatch3.1
OR
ciscovideoscape_delivery_system_for_internet_streamerMatch1.0.0
OR
ciscovideoscape_delivery_system_for_internet_streamerMatch3.2.0
OR
ciscovideoscape_delivery_system_for_internet_streamerMatch3.2.1
OR
ciscovideoscape_delivery_system_origin_serverMatch1.0
OR
ciscovideoscape_distribution_suite_optimization_engineMatch1.0.0
OR
ciscovideoscape_distribution_suite_service_brokerMatch1.0.0
OR
ciscovideoscape_distribution_suite_service_brokerMatch1.0.1
OR
ciscovideoscape_distribution_suite_service_brokerMatch1.1.0
VendorProductVersionCPE
ciscowide_area_application_services4.1.1cpe:2.3:a:cisco:wide_area_application_services:4.1.1:*:*:*:*:*:*:*
ciscowide_area_application_services4.1.1cpe:2.3:a:cisco:wide_area_application_services:4.1.1:a:*:*:*:*:*:*
ciscowide_area_application_services4.1.1cpe:2.3:a:cisco:wide_area_application_services:4.1.1:b:*:*:*:*:*:*
ciscowide_area_application_services4.1.1cpe:2.3:a:cisco:wide_area_application_services:4.1.1:c:*:*:*:*:*:*
ciscowide_area_application_services4.1.1cpe:2.3:a:cisco:wide_area_application_services:4.1.1:d:*:*:*:*:*:*
ciscowide_area_application_services4.1.3cpe:2.3:a:cisco:wide_area_application_services:4.1.3:*:*:*:*:*:*:*
ciscowide_area_application_services4.1.3cpe:2.3:a:cisco:wide_area_application_services:4.1.3:a:*:*:*:*:*:*
ciscowide_area_application_services4.1.3cpe:2.3:a:cisco:wide_area_application_services:4.1.3:b:*:*:*:*:*:*
ciscowide_area_application_services4.1.5cpe:2.3:a:cisco:wide_area_application_services:4.1.5:a:*:*:*:*:*:*
ciscowide_area_application_services4.1.5cpe:2.3:a:cisco:wide_area_application_services:4.1.5:b:*:*:*:*:*:*
Rows per page:
1-10 of 1201

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.2

Confidence

High

EPSS

0.005

Percentile

76.3%

Related for NVD:CVE-2013-3444