CVE-2010-3039
published 2010-11-09CVE-2010-3039: /usr/local/cm/bin/pktCap_protectData in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6, 7, and 8 allows remote authenticated…
PriorityP353medium6.8CVSS 2.0
AVLACLAuSCCICAC
EXPLOIT
EPSS
8.61%
94.5th percentile
/usr/local/cm/bin/pktCap_protectData in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6, 7, and 8 allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in a request to the administrative interface, aka Bug IDs CSCti52041 and CSCti74930.
Affected
43 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
Cisco Unified Communications Manager 8.0 - Invalid Argument Privilege Escalation
exploitdb·2010-11-03
CVE-2010-3039 Cisco Unified Communications Manager 8.0 - Invalid Argument Privilege Escalation
Cisco Unified Communications Manager 8.0 - Invalid Argument Privilege Escalation
---
source: https://www.securityfocus.com/bid/44672/info
Cisco Unified Communications Manager is prone to a local privilege-escalation vulnerability.
Attackers can exploit this issue to gain administrative access to the affected device and execute arbitrary code with superuser privileges. Successful exploits will lead to the complete compromise of the device.
This issue is tracked by Cisco Bug ID CSCti52041 and CSCti74930.
Cisco Unified Communications Manager 6, 7, and 8 are vulnerable.
/usr/local/cm/bin/pktCap_protectData -i";id"
Exploit-DB
Microsoft Message Queueing Service - DNS Name Path Overflow (MS07-065) (Metasploit)
exploitdb·2010-07-25
CVE-2007-3039 Microsoft Message Queueing Service - DNS Name Path Overflow (MS07-065) (Metasploit)
Microsoft Message Queueing Service - DNS Name Path Overflow (MS07-065) (Metasploit)
---
##
# $Id: ms07_065_msmq.rb 9929 2010-07-25 21:37:54Z jduck $
##
##
# This file is part of the Metasploit Framework and may be subject to
# redistribution and commercial restrictions. Please see the Metasploit
# Framework web site for more information on licensing and terms of use.
# http://metasploit.com/framework/
##
require 'msf/core'
class Metasploit3 'Microsoft Message Queueing Service DNS Name Path Overflow',
'Description' => %q{
This module exploits a stack buffer overflow in the RPC interface
to the Microsoft Message Queueing service. This exploit requires
the target system to have been configured with a DNS name and
for that name to be supplied in the 'DNAME' option. This name does
not ne
No writeups or analysis indexed.
http://seclists.org/fulldisclosure/2010/Nov/40http://secunia.com/advisories/42129http://tools.cisco.com/security/center/viewAlert.x?alertId=21656http://www.nsense.fi/advisories/nsense_2010_003.txthttp://www.securityfocus.com/archive/1/514668/100/0/threadedhttp://www.securityfocus.com/bid/44672http://www.securitytracker.com/id?1024694http://www.vupen.com/english/advisories/2010/2915http://seclists.org/fulldisclosure/2010/Nov/40http://secunia.com/advisories/42129http://tools.cisco.com/security/center/viewAlert.x?alertId=21656http://www.nsense.fi/advisories/nsense_2010_003.txthttp://www.securityfocus.com/archive/1/514668/100/0/threadedhttp://www.securityfocus.com/bid/44672http://www.securitytracker.com/id?1024694http://www.vupen.com/english/advisories/2010/2915
2010-11-09
Published