Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2013-3379

EPSS 0.24% · P47
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2013-3379

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The firewall subsystem in Cisco TelePresence TC Software before 4.2 does not properly implement rules that grant access to hosts, which allows remote attackers to obtain shell access with root privileges by leveraging connectivity to the management network, aka Bug ID CSCts37781.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Cisco TelePresence TC软件权限许可和访问控制漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Cisco TelePresence是美国思科(Cisco)公司的一套被称为“网真”系统的视频会议解决方案。该方案提供音频、视频空间等组件,可为远程参会者提供一个“面对面”的虚拟会议室效果。 Cisco TelePresence TC Software 4.1.2及之前的版本中的防火墙子系统中存在漏洞,该漏洞源于程序没有正确实现授予访问主机权限的规则。远程攻击者可通过连接到管理网络,利用该漏洞以root权限获得shell访问权限。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2013-3379

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-3379

登录查看更多情报信息。

Same Patch Batch · n/a · 2013-06-21 · 23 CVEs total

CVE-2013-0548IBM Application Manager For Smart Business/ITM 多个跨站脚本漏洞
CVE-2013-3378Cisco TelePresence TC/TE软件输入验证漏洞
CVE-2013-3377Cisco TelePresence TC/TE软件资源管理错误漏洞
CVE-2013-2173WordPress ‘crypt_private()’方法远程拒绝服务漏洞
CVE-2013-3035IBM AIX IPv6包处理远程拒绝服务漏洞
CVE-2013-0534IBM Sametime Connect客户端本地信息泄露漏洞
CVE-2013-0529IBM Sterling Connect:Direct 浏览器安全漏洞
CVE-2013-0527IBM Sterling Connect:Direct 浏览器安全漏洞
CVE-2013-2961IBM Application Manager for Smart Business/ITM 安全漏洞
CVE-2013-2960IBM Application Manager for Smart Business/ITM 缓冲区溢出漏洞
CVE-2013-0551IBM Application Manager for Smart Business/ITM 拒绝服务漏洞
CVE-2013-3392Cisco WebEx Social 多个跨站请求伪造漏洞
CVE-2013-0536IBM Notes Multi User Profile Cleanup Service 本地提权漏洞
CVE-2013-0523IBM WebSphere Commerce Enterprise 信息泄露漏洞
CVE-2012-6572Drupal 跨站脚本漏洞
CVE-2013-3250WordPress WP Maintenance Mode插件跨站请求伪造漏洞
CVE-2013-2110PHP 基于堆的缓冲区溢出漏洞
CVE-2013-4636PHP 输入验证错误漏洞
CVE-2013-4635PHP 数字错误漏洞
CVE-2013-4615多款Canon打印机存远程拒绝服务漏洞

Showing top 20 of 23 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2013-3379

No comments yet


Leave a comment