Cisco CiscoWorks Common Services 3.0

CPE Details

Cisco CiscoWorks Common Services 3.0
3.0
2011-05-23
11h49 +00:00
2012-05-30
18h50 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:cisco:ciscoworks_common_services:3.0:*:*:*:*:*:*:*

Informations

Vendor

cisco

Product

ciscoworks_common_services

Version

3.0

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2011-2042 2011-10-22 01h00 +00:00 The Sybase SQL Anywhere database component in Cisco CiscoWorks Common Services 3.x and 4.x before 4.1 allows remote attackers to obtain potentially sensitive information about the engine name and database port via an unspecified request to UDP port 2638, aka Bug ID CSCsk35018.
5
CVE-2011-3310 2011-10-19 22h00 +00:00 The Home Page component in Cisco CiscoWorks Common Services before 4.1 on Windows, as used in CiscoWorks LAN Management Solution, Cisco Security Manager, Cisco Unified Service Monitor, Cisco Unified Operations Manager, CiscoWorks QoS Policy Manager, and CiscoWorks Voice Manager, allows remote authenticated users to execute arbitrary commands via a crafted URL, aka Bug IDs CSCtq48990, CSCtq63992, CSCtq64011, CSCtq64019, CSCtr23090, and CSCtt25535.
9
CVE-2011-0961 2011-05-20 20h00 +00:00 Cross-site scripting (XSS) vulnerability in cwhp/device.center.do in the Help servlet in Cisco CiscoWorks Common Services 3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the device parameter, aka Bug ID CSCto12704.
4.3
CVE-2011-0966 2011-05-20 20h00 +00:00 Directory traversal vulnerability in cwhp/auditLog.do in the Homepage Auditing component in Cisco CiscoWorks Common Services 3.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter, aka Bug ID CSCto35577.
6.8