7.8

CVE-2023-20216

A vulnerability in the privilege management functionality of all Cisco BroadWorks server types could allow an authenticated, local attacker to elevate privileges to root on an affected system. 

 This vulnerability is due to incorrect implementation of user role permissions. An attacker could exploit this vulnerability by authenticating to the application as a user with the BWORKS or BWSUPERADMIN role and issuing crafted commands on an affected system. A successful exploit could allow the attacker to execute commands beyond the sphere of their intended access level, including initiating installs or running operating system commands with elevated permissions.

   There are workarounds that address this vulnerability.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Broadworks Application Server SwEdition - Version < 23.0.2023.05
Cisco ≫ Broadworks Application Server SwEdition release_independent Version < 2023.05
Cisco ≫ Broadworks Application Server SwEdition - Version >= 24.0 < 24.0.2023.05
Cisco ≫ Broadworks Database Server SwEdition release_independent Version < 2023.05
Cisco ≫ Broadworks Execution Server SwEdition release_independent Version < 2023.05
Cisco ≫ Broadworks Media Server SwEdition release_independent Version < 2023.05
Cisco ≫ Broadworks Network Database Server SwEdition release_independent Version < 2023.05
Cisco ≫ Broadworks Network Function Manager SwEdition release_independent Version < 2023.05
Cisco ≫ Broadworks Network Server SwEdition - Version < 23.0.2023.05
Cisco ≫ Broadworks Network Server SwEdition release_independent Version < 2023.05
Cisco ≫ Broadworks Profile Server SwEdition - Version < 23.0.2023.05
Cisco ≫ Broadworks Profile Server SwEdition release_independent Version < 2023.05
Cisco ≫ Broadworks Service Control Function Server SwEdition release_independent Version < 2023.05
Cisco ≫ Broadworks Troubleshooting Server SwEdition release_independent Version < 2023.06
Cisco ≫ Broadworks Xtended Services Platform SwEdition - Version < 23.0.2023.05
Cisco ≫ Broadworks Xtended Services Platform SwEdition release_independent Version < 2023.05
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.16% 0.053
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Cisco PSIRT 4.4 0.8 3.6
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
CWE-269 Improper Privilege Management

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

CWE-732 Incorrect Permission Assignment for Critical Resource

The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bw-priv-esc-qTgUZOsQ
Vendor Advisory