CVE-2003-0210
published 2003-05-12CVE-2003-0210: Buffer overflow in the administration service (CSAdmin) for Cisco Secure ACS before 3.1.2 allows remote attackers to cause a denial of service and possibly…
PriorityP428high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
5.89%
92.4th percentile
Buffer overflow in the administration service (CSAdmin) for Cisco Secure ACS before 3.1.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long user parameter to port 2002.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vfr9-fcp8-rg78: Buffer overflow in the administration service (CSAdmin) for Cisco Secure ACS before 3
ghsa_unreviewed·2022-04-29
CVE-2003-0210 [HIGH] GHSA-vfr9-fcp8-rg78: Buffer overflow in the administration service (CSAdmin) for Cisco Secure ACS before 3
Buffer overflow in the administration service (CSAdmin) for Cisco Secure ACS before 3.1.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long user parameter to port 2002.
Cisco
Cisco Secure Access Control Server for Windows Admin Buffer Overflow Vulnerability
vendor_cisco·2003-04-23
Cisco Secure Access Control Server for Windows Admin Buffer Overflow Vulnerability
Cisco Secure Access Control Server for Windows Admin Buffer Overflow Vulnerability
Cisco Secure ACS for Windows is vulnerable to a buffer overflow on the administration
service which runs on TCP port 2002. Exploitation of this vulnerability results
in a Denial of Service, and can potentially result in system administrator access.
Cisco is providing repaired software, and customers are recommended to install
patches or upgrade at their earliest opportunity. Workarounds can be implemented,
and consist of blocking external access to port 2002 on the ACS.
This issue is documented in Cisco Bug ID CSCea51366. This issue is also being
referenced in the Mitre CVE as CAN-2003-0210.
This advisory is available at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-
No detection rules found.
No writeups or analysis indexed.
http://marc.info/?l=bugtraq&m=105120066126196&w=2http://marc.info/?l=ntbugtraq&m=105118056332344&w=2http://www.cisco.com/warp/public/707/cisco-sa-20030423-ACS.shtmlhttp://www.kb.cert.org/vuls/id/697049http://marc.info/?l=bugtraq&m=105120066126196&w=2http://marc.info/?l=ntbugtraq&m=105118056332344&w=2http://www.cisco.com/warp/public/707/cisco-sa-20030423-ACS.shtmlhttp://www.kb.cert.org/vuls/id/697049
2003-05-12
Published