CVE-2010-3036

Severity
10.0CRITICAL
EPSS
18.8%
top 4.70%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 29
Latest updateMay 17

Description

Multiple buffer overflows in the authentication functionality in the web-server module in Cisco CiscoWorks Common Services before 4.0 allow remote attackers to execute arbitrary code via a session on TCP port (1) 443 or (2) 1741, aka Bug ID CSCti41352.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages7 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-36rh-2x2f-hxh9: Multiple buffer overflows in the authentication functionality in the web-server module in Cisco CiscoWorks Common Services before 42022-05-17
CVEList
CVE-2010-3036: Multiple buffer overflows in the authentication functionality in the web-server module in Cisco CiscoWorks Common Services before 42010-10-29

📋Vendor Advisories

1
Cisco
CiscoWorks Common Services Arbitrary Code Execution Vulnerability2010-10-27