CVE-2018-0124
published 2018-02-22CVE-2018-0124: A vulnerability in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain elevated…
PriorityP268critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
5.15%
91.4th percentile
A vulnerability in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain elevated privileges, and execute arbitrary code. The vulnerability is due to insecure key generation during application configuration. An attacker could exploit this vulnerability by using a known insecure key value to bypass security protections by sending arbitrary requests using the insecure key to a targeted application. An exploit could allow the attacker to execute arbitrary code. This vulnerability affects Cisco Unified Communications Domain Manager releases prior to 11.5(2). Cisco Bug IDs: CSCuv67964.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | unified_communications_domain_manager | < 11.5\(2\) | 11.5\(2\) |
| cisco | unified_communications_domain_manager | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Exploit involves sending arbitrary requests using a known insecure (hardcoded/predictable) key value to bypass security protections on the targeted application — monitor for unexpected or unauthorized API/application requests bearing static or known key material. ↗
- ·No workarounds are available; the only remediation is upgrading to Cisco Unified Communications Domain Manager 11.5(2) or later. ↗
- ·Two Cisco Bug IDs are associated with this vulnerability (CSCuv67964 and CSCvi10692), suggesting the insecure key issue may span multiple components or configurations of the product. ↗
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_cisco9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Unified Communications Domain Manager Remote Code Execution Vulnerability
vendor_cisco·2018-02-22·CVSS 9.8
CVE-2018-0124 [CRITICAL] CWE-320 Cisco Unified Communications Domain Manager Remote Code Execution Vulnerability
Cisco Unified Communications Domain Manager Remote Code Execution Vulnerability
A vulnerability in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain elevated privileges, and execute arbitrary code.
The vulnerability is due to insecure key generation during application configuration. An attacker could exploit this vulnerability by using a known insecure key value to bypass security protections by sending arbitrary requests using the insecure key to a targeted application. An exploit could allow the attacker to execute arbitrary code.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the following link:
h
Cisco
Cisco Unified Communications Domain Manager Remote Code Execution Vulnerability
vendor_cisco·CVSS 3.0
CVE-2018-0124 Cisco Unified Communications Domain Manager Remote Code Execution Vulnerability
CVE-2018-0124: Cisco Unified Communications Domain Manager Remote Code Execution Vulnerability
A vulnerability in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain elevated privileges, and execute arbitrary code. The vulnerability is due to insecure key generation during application configuration. An attacker could exploit this vulnerability by using a known insecure key value to bypass security protections by sending arbitrary requests using the insecure key to a targeted application. An exploit could allow the attacker to execute arbitrary code. Cisco has released software updates that address this vulnerability. There are no
CVSS: 3.0
CWE: CWE-320, CWE-320
Bug IDs: CSCuv67964, CSCvi10692
GHSA
GHSA-8wjv-jcjm-9fj9: A vulnerability in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain el
ghsa_unreviewed·2022-05-13
CVE-2018-0124 [CRITICAL] GHSA-8wjv-jcjm-9fj9: A vulnerability in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain el
A vulnerability in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain elevated privileges, and execute arbitrary code. The vulnerability is due to insecure key generation during application configuration. An attacker could exploit this vulnerability by using a known insecure key value to bypass security protections by sending arbitrary requests using the insecure key to a targeted application. An exploit could allow the attacker to execute arbitrary code. This vulnerability affects Cisco Unified Communications Domain Manager releases prior to 11.5(2). Cisco Bug IDs: CSCuv67964.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/103114http://www.securitytracker.com/id/1040405https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180221-ucdmhttp://www.securityfocus.com/bid/103114http://www.securitytracker.com/id/1040405https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180221-ucdm
2018-02-22
Published