← Voltar para CVEs
CVE-2010-0599
N/ADescricao
Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 does not encrypt XML RPC sessions from operator workstations, which allows remote attackers to discover Administrator credentials by sniffing the network, aka Bug ID CSCtb83505.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado5/27/2010
Ultima modificacao4/29/2026
Fontenvd
Avistamentos honeypot0
Produtos afetados
cisco:mediator_frameworkcisco:network_building_mediator_nbm-2400cisco:network_building_mediator_nbm-4800cisco:richards-zeta_mediator_2500
Fraquezas (CWE)
CWE-255
Referencias
http://secunia.com/advisories/39904(psirt@cisco.com)
http://securitytracker.com/id?1024027(psirt@cisco.com)
http://www.cisco.com/en/US/products/products_security_advisory09186a0080b2c518.shtml(psirt@cisco.com)
http://www.kb.cert.org/vuls/id/757804(psirt@cisco.com)
http://www.us-cert.gov/control_systems/pdf/ICSA-10-147-01_Cisco_Network_Building_Mediator.pdf(psirt@cisco.com)
http://secunia.com/advisories/39904(af854a3a-2127-422b-91ae-364da2661108)
http://securitytracker.com/id?1024027(af854a3a-2127-422b-91ae-364da2661108)
http://www.cisco.com/en/US/products/products_security_advisory09186a0080b2c518.shtml(af854a3a-2127-422b-91ae-364da2661108)
http://www.kb.cert.org/vuls/id/757804(af854a3a-2127-422b-91ae-364da2661108)
http://www.us-cert.gov/control_systems/pdf/ICSA-10-147-01_Cisco_Network_Building_Mediator.pdf(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.