The authorization functionality in Cisco Firewall Services Module (FWSM) 3.1.x and 3.2.x before 3.2(25) and 4.x before 4.1(13), when multiple-context mode is enabled, allows local users to read or modify any context's configuration via unspecified commands, aka Bug ID CSCue46080.
No CVSS v3.1
No CVSS v3.0
Access Vector Local
Access Complexity Medium
Authentication Single
Confidentiality Impact Complete
Integrity Impact Complete
Availability Impact Complete
AV:L/AC:M/Au:S/C:C/I:C/A:C
Vendors | Products |
---|---|
Cisco |
|
Configuration 1 [-]
|
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20131009-fwsm | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisco
Published: 2022-10-03T16:14:55
Updated: 2022-10-03T16:14:55
Reserved: 2022-10-03T00:00:00
Link: CVE-2013-5506
JSON object: View
NVD Information
Status : Analyzed
Published: 2013-10-13T10:20:04.223
Modified: 2013-10-15T17:47:47.273
Link: CVE-2013-5506
JSON object: View
Redhat Information
No data.
CWE