CVE-2008-3820
published 2009-01-22CVE-2008-3820: Cisco Security Manager 3.1 and 3.2 before 3.2.2, when Cisco IPS Event Viewer (IEV) is used, exposes TCP ports used by the MySQL daemon and IEV server, which…
PriorityP431medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
1.38%
68.9th percentile
Cisco Security Manager 3.1 and 3.2 before 3.2.2, when Cisco IPS Event Viewer (IEV) is used, exposes TCP ports used by the MySQL daemon and IEV server, which allows remote attackers to obtain "root access" to IEV via unspecified use of TCP sessions to these ports.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | security_manager | — | — |
| cisco | security_manager | — | — |
| cisco | security_manager | — | — |
| cisco | security_manager | — | — |
| cisco | security_manager | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_cisco8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fr66-q3h8-gpgg: Cisco Security Manager 3
ghsa_unreviewed·2022-05-02
CVE-2008-3820 [MEDIUM] GHSA-fr66-q3h8-gpgg: Cisco Security Manager 3
Cisco Security Manager 3.1 and 3.2 before 3.2.2, when Cisco IPS Event Viewer (IEV) is used, exposes TCP ports used by the MySQL daemon and IEV server, which allows remote attackers to obtain "root access" to IEV via unspecified use of TCP sessions to these ports.
Cisco
Cisco Security Manager Vulnerability
vendor_cisco·2009-01-21·CVSS 8.8
CVE-2008-3820 [HIGH] CWE-287 Cisco Security Manager Vulnerability
Cisco Security Manager Vulnerability
Cisco Security Manager contains a vulnerability when it is used with
Cisco IPS Event Viewer (IEV) that results in open TCP ports on both the Cisco
Security Manager server and IEV client. An unauthenticated, remote attacker
could leverage this vulnerability to access the MySQL databases or IEV
server.
Cisco has released software updates that address this vulnerability. A workaround is also available to mitigate this
vulnerability.
This advisory is posted at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20090121-csm.
Cisco
Cisco Security Manager Vulnerability
vendor_cisco
CVE-2008-3820 Cisco Security Manager Vulnerability
CVE-2008-3820: Cisco Security Manager Vulnerability
Cisco Security Manager contains a vulnerability when it is used with Cisco IPS Event Viewer (IEV) that results in open TCP ports on both the Cisco Security Manager server and IEV client. An unauthenticated, remote attacker could leverage this vulnerability to access the MySQL databases or IEV server. Cisco has released software updates that address this vulnerability. A workaround is also available to mitigate this vulnerability. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20090121-csm .
CWE: CWE-287, CWE-287
Bug IDs: CSCsv66897, CSCsv66897, CSCsv66897, CSCsv66897, CSCsv66897
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/33633http://www.cisco.com/en/US/products/products_security_advisory09186a0080a6192a.shtmlhttp://www.securityfocus.com/bid/33381http://www.securitytracker.com/id?1021619http://www.vupen.com/english/advisories/2009/0214https://exchange.xforce.ibmcloud.com/vulnerabilities/48134http://secunia.com/advisories/33633http://www.cisco.com/en/US/products/products_security_advisory09186a0080a6192a.shtmlhttp://www.securityfocus.com/bid/33381http://www.securitytracker.com/id?1021619http://www.vupen.com/english/advisories/2009/0214https://exchange.xforce.ibmcloud.com/vulnerabilities/48134
2009-01-22
Published