| Title | 複数の Cisco 製品における Linux シェルアクセスを取得される脆弱性 |
|---|---|
| Summary | 複数の Cisco 製品には、Linux シェルアクセスを取得される脆弱性が存在します。 |
| Possible impacts | ローカルユーザにより、Linux シェルアクセスを取得される可能性があります。 |
| Solution | ベンダ情報および参考情報を参照して適切な対策を実施してください。 |
| Publication Date | April 21, 2006, midnight |
| Registration Date | March 11, 2014, 5:43 p.m. |
| Last Update | March 11, 2014, 5:43 p.m. |
| CVSS2.0 : 危険 | |
| Score | 7.5 |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| シスコシステムズ |
| ciscoworks 2000 service management solution |
| CiscoWorks Host Solution Engine (HSE) 20060419 未満 |
| CiscoWorks Wireless LAN Solution Engine (CWWLSE) 2.13 未満 |
| ethernet subscriber solution engine |
| user registration tool 20060419 未満 |
| No | Changed Details | Date of change |
|---|---|---|
| 0 | [2014年03月11日] 掲載 |
Feb. 17, 2018, 10:37 a.m. |
| Summary | Cisco CiscoWorks Wireless LAN Solution Engine (WLSE) and WLSE Express before 2.13, Hosting Solution Engine (HSE) and User Registration Tool (URT) before 20060419, and all versions of Ethernet Subscriber Solution Engine (ESSE) and CiscoWorks2000 Service Management Solution (SMS) allow local users to gain Linux shell access via shell metacharacters in arguments to the "show" command in the application's command line interface (CLI), aka bug ID CSCsd21502 (WLSE), CSCsd22861 (URT), and CSCsd22859 (HSE). NOTE: other issues might be addressed by the Cisco advisory. |
|---|---|
| Publication Date | April 21, 2006, 7:02 p.m. |
| Registration Date | Jan. 29, 2021, 3:36 p.m. |
| Last Update | Oct. 19, 2018, 1:37 a.m. |
| Configuration1 | or higher | or less | more than | less than | |
| cpe:2.3:a:cisco:user_registration_tool:*:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.0:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.0:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.1:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.1:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.2:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.2:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.3:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.3:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.4:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.4:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.5:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.5:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.6:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.6:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.7:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.7:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.8:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.8:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.9:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.9:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.10:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.10:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.11:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.11:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.12:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.12:*:express:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.13:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:cisco:wireless_lan_solution_engine:2.13:*:express:*:*:*:*:* | |||||
| Configuration2 | or higher | or less | more than | less than | |
| cpe:2.3:a:cisco:ciscoworks_2000_service_management_solution:*:*:*:*:*:*:*:* | |||||
| cpe:2.3:h:cisco:hosting_solution_engine:1.7:*:*:*:*:*:*:* | |||||
| cpe:2.3:h:cisco:hosting_solution_engine:1.7.0:*:*:*:*:*:*:* | |||||
| cpe:2.3:h:cisco:hosting_solution_engine:1.7.1:*:*:*:*:*:*:* | |||||
| cpe:2.3:h:cisco:hosting_solution_engine:1.7.2:*:*:*:*:*:*:* | |||||
| cpe:2.3:h:cisco:hosting_solution_engine:1.7.3:*:*:*:*:*:*:* | |||||
| cpe:2.3:o:cisco:ethernet_subscriber_solution_engine:*:*:*:*:*:*:*:* | |||||