7.8
CVE-2023-20216
- EPSS 0.01%
- Veröffentlicht 03.08.2023 22:15:11
- Zuletzt bearbeitet 21.11.2024 07:40:54
- Quelle psirt@cisco.com
- Teams Watchlist Login
- Unerledigt Login
A vulnerability in the privilege management functionality of all Cisco BroadWorks server types could allow an authenticated, local attacker to elevate privileges to root on an affected system. This vulnerability is due to incorrect implementation of user role permissions. An attacker could exploit this vulnerability by authenticating to the application as a user with the BWORKS or BWSUPERADMIN role and issuing crafted commands on an affected system. A successful exploit could allow the attacker to execute commands beyond the sphere of their intended access level, including initiating installs or running operating system commands with elevated permissions. There are workarounds that address this vulnerability.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Broadworks Application Delivery Platform Version < ri.2023.05
Cisco ≫ Broadworks Application Server SwEdition- Version < 23.0.2023.05
Cisco ≫ Broadworks Application Server SwEditionrelease_independent Version < 2023.05
Cisco ≫ Broadworks Application Server SwEdition- Version >= 24.0 < 24.0.2023.05
Cisco ≫ Broadworks Database Server SwEditionrelease_independent Version < 2023.05
Cisco ≫ Broadworks Execution Server SwEditionrelease_independent Version < 2023.05
Cisco ≫ Broadworks Media Server SwEditionrelease_independent Version < 2023.05
Cisco ≫ Broadworks Network Database Server SwEditionrelease_independent Version < 2023.05
Cisco ≫ Broadworks Network Function Manager SwEditionrelease_independent Version < 2023.05
Cisco ≫ Broadworks Network Server SwEdition- Version < 23.0.2023.05
Cisco ≫ Broadworks Network Server SwEditionrelease_independent Version < 2023.05
Cisco ≫ Broadworks Profile Server SwEdition- Version < 23.0.2023.05
Cisco ≫ Broadworks Profile Server SwEditionrelease_independent Version < 2023.05
Cisco ≫ Broadworks Service Control Function Server SwEditionrelease_independent Version < 2023.05
Cisco ≫ Broadworks Troubleshooting Server SwEditionrelease_independent Version < 2023.06
Cisco ≫ Broadworks Xtended Services Platform SwEdition- Version < 23.0.2023.05
Cisco ≫ Broadworks Xtended Services Platform SwEditionrelease_independent Version < 2023.05
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.01% | 0.007 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
psirt@cisco.com | 4.4 | 0.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
|
CWE-269 Improper Privilege Management
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
CWE-732 Incorrect Permission Assignment for Critical Resource
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.