cbcvebase.
CVE-2018-0124
published 2018-02-22

CVE-2018-0124: A vulnerability in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain elevated…

PriorityP268critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
5.15%
91.4th percentile
A vulnerability in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain elevated privileges, and execute arbitrary code. The vulnerability is due to insecure key generation during application configuration. An attacker could exploit this vulnerability by using a known insecure key value to bypass security protections by sending arbitrary requests using the insecure key to a targeted application. An exploit could allow the attacker to execute arbitrary code. This vulnerability affects Cisco Unified Communications Domain Manager releases prior to 11.5(2). Cisco Bug IDs: CSCuv67964.

Affected

2 ranges
VendorProductVersion rangeFixed in
ciscounified_communications_domain_manager< 11.5\(2\)11.5\(2\)
ciscounified_communications_domain_manager

Detection & IOCsextracted from sources · hover to see the quote

  • Exploit involves sending arbitrary requests using a known insecure (hardcoded/predictable) key value to bypass security protections on the targeted application — monitor for unexpected or unauthorized API/application requests bearing static or known key material.
  • ·No workarounds are available; the only remediation is upgrading to Cisco Unified Communications Domain Manager 11.5(2) or later.
  • ·Two Cisco Bug IDs are associated with this vulnerability (CSCuv67964 and CSCvi10692), suggesting the insecure key issue may span multiple components or configurations of the product.

CVSS provenance

nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_cisco9.8CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.