CVE-2003-0731
Currently unrated
Key Information:
- Vendor
- Cisco
- Vendor
- CVE Published:
- 20 October 2003
Summary
CiscoWorks Common Management Foundation (CMF) 2.1 and earlier allows the guest user to gain administrative privileges via a certain POST request to com.cisco.nm.cmf.servlet.CsAuthServlet, possibly involving the "cmd" parameter with a modifyUser value and a modified "priviledges" parameter.
References
Timeline
Vulnerability Reserved
Vulnerability published