HIGH
Directory traversal vulnerability in the TFTP service in Cisco CiscoWorks Common Services (CWCS) 3.0.x through 3.2.x on Windows, as used in Cisco Unified Service Monitor, Security Manager, TelePresence Readiness Assessment Manager, Unified Operations Manager, Unified Provisioning Manager, and other products, allows remote attackers to access arbitrary files via unspecified vectors
Published May 21, 2009
10.0
HIGHCVSS 2.0
EPSS 12.55%
Description
Directory traversal vulnerability in the TFTP service in Cisco CiscoWorks Common Services (CWCS) 3.0.x through 3.2.x on Windows, as used in Cisco Unified Service Monitor, Security Manager, TelePresence Readiness Assessment Manager, Unified Operations Manager, Unified Provisioning Manager, and other products, allows remote attackers to access arbitrary files via unspecified vectors.
Affected products
No data.
AND
OR
- 3.0.3
- 3.0.4
- 3.0.5
- 3.0.6
- 3.1
- 3.1.1
- 3.2
OR
- 1.0
- 1.1
- 2.5
- 2.6
- 3.0
- 3.1
- 4.0
- 4.1
- 3.0
- 3.1
- 3.0
- 3.1
- 3.2
- 1.0
- 1.0
- 1.1
- 2.0
- 2.1
- 1.0
- 1.1
- 1.2
- 1.3
- 1.0
- 1.1
- 2.0
- 2.1
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (8)
- http://jvn.jp/en/jp/JVN62527913/index.html third-party-advisoryx_refsource_JVN
- http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-000032.html third-party-advisoryx_refsource_JVNDB
- http://osvdb.org/54616 vdb-entryx_refsource_OSVDB
- http://secunia.com/advisories/35179 third-party-advisoryx_refsource_SECUNIA
- http://securitytracker.com/id?1022263 vdb-entryx_refsource_SECTRACK
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080ab7b56.shtml vendor-advisoryx_refsource_CISCOPatchVendor Advisory
- http://www.securityfocus.com/bid/35040 vdb-entryx_refsource_BID
- http://www.vupen.com/english/advisories/2009/1390 vdb-entryx_refsource_VUPEN
| Link | Providers | Tags |
|---|---|---|
| http://jvn.jp/en/jp/JVN62527913/index.html | third-party-advisoryx_refsource_JVN | |
| http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-000032.html | third-party-advisoryx_refsource_JVNDB | |
| http://osvdb.org/54616 | vdb-entryx_refsource_OSVDB | |
| http://secunia.com/advisories/35179 | third-party-advisoryx_refsource_SECUNIA | |
| http://securitytracker.com/id?1022263 | vdb-entryx_refsource_SECTRACK | |
| http://www.cisco.com/en/US/products/products_security_advisory09186a0080ab7b56.shtml | vendor-advisoryx_refsource_CISCOPatchVendor Advisory | |
| http://www.securityfocus.com/bid/35040 | vdb-entryx_refsource_BID | |
| http://www.vupen.com/english/advisories/2009/1390 | vdb-entryx_refsource_VUPEN |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner cisco
Published May 21, 2009
Updated Aug 7, 2024
Reserved Mar 26, 2009
Link CVE-2009-1161
CISA Vulnrichment
Updated n/a