CVE-2019-15241
published 2019-10-16CVE-2019-15241: Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with…
PriorityP345high8CVSS 3.1
AVAACLPRLUINSUCHIHAH
EPSS
0.58%
43.6th percentile
Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper validation of user-supplied input to the web-based management interface. An attacker could exploit these vulnerabilities by authenticating to the web-based management interface and sending crafted requests to an affected device. A successful exploit could allow the attacker to execute arbitrary code with elevated privileges. Note: The web-based management interface is enabled by default.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | analog_telephone_adapters | — | — |
| cisco | cisco_spa112_2-port_phone_adapter | >= unspecified < n/a | n/a |
| cisco | spa112_firmware | < 1.4.1 | 1.4.1 |
| cisco | spa112_firmware | — | — |
| cisco | spa122_firmware | < 1.4.1 | 1.4.1 |
| cisco | spa122_firmware | — | — |
| typo3 | cms | >= 8.0.0 < 8.7.25 | 8.7.25 |
| typo3 | cms | >= 9.0.0 < 9.5.6 | 9.5.6 |
| typo3 | cms-core | >= 8.0.0 < 8.7.25 | 8.7.25 |
| typo3 | cms-core | >= 9.0.0 < 9.5.6 | 9.5.6 |
| typo3fluid | fluid | >= 2.0.0 < 2.0.5 | 2.0.5 |
| typo3fluid | fluid | >= 2.1.0 < 2.1.4 | 2.1.4 |
| typo3fluid | fluid | >= 2.2.0 < 2.2.1 | 2.2.1 |
| typo3fluid | fluid | >= 2.3.0 < 2.3.5 | 2.3.5 |
| typo3fluid | fluid | >= 2.4.0 < 2.4.1 | 2.4.1 |
| typo3fluid | fluid | >= 2.5.0 < 2.5.5 | 2.5.5 |
| typo3fluid | fluid | >= 2.6.0 < 2.6.1 | 2.6.1 |
CVSS provenance
nvdv3.18.0HIGHCVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv3.08.0HIGHCVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.05.2MEDIUMAV:A/AC:L/Au:S/C:P/I:P/A:P
vendor_cisco8.0HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-c33m-wrfp-ff3c: Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary
ghsa_unreviewed·2022-05-24
CVE-2019-15241 [HIGH] CWE-119 GHSA-c33m-wrfp-ff3c: Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary
Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper validation of user-supplied input to the web-based management interface. An attacker could exploit these vulnerabilities by authenticating to the web-based management interface and sending crafted requests to an affected device. A successful exploit could allow the attacker to execute arbitrary code with elevated privileges. Note: The web-based management interface is enabled by default.
GHSA
Cross-Site Scripting in ternary conditional operator
ghsa·2020-10-08
CVE-2020-15241 [MEDIUM] CWE-601 Cross-Site Scripting in ternary conditional operator
Cross-Site Scripting in ternary conditional operator
> ### Meta
> * CVSS: `CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N/E:F/RL:O/RC:C`(5.0)
> * CWE-79
---
:information_source: This vulnerability has been fixed in May 2019 already, CVE and GHSA were assigned later in October 2020
---
### Problem
It has been discovered that the Fluid Engine (package `typo3fluid/fluid`) is vulnerable to cross-site scripting when making use of the ternary conditional operator in templates like the following.
```
{showFullName ? fullName : defaultValue}
```
### Solution
Update to versions 2.0.5, 2.1.4, 2.2.1, 2.3.5, 2.4.1, 2.5.5 or 2.6.1 of this `typo3fluid/fluid` package that fix the problem described.
Updated versions of this package are bundled in following TYPO3 (`typo3/cms-core`) releases:
* TYPO3
Cisco
Multiple Cisco Analog Telephone Adapters Remote Code Execution Vulnerabilities
vendor_cisco·2019-10-16·CVSS 8.0
CVE-2019-15240 [HIGH] CWE-119 Multiple Cisco Analog Telephone Adapters Remote Code Execution Vulnerabilities
Multiple Cisco Analog Telephone Adapters Remote Code Execution Vulnerabilities
Multiple vulnerabilities in Cisco SPA Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges.
The vulnerabilities are due to improper validation of user-supplied input to the web-based management interface. An attacker could exploit these vulnerabilities by authenticating to the web-based management interface and sending crafted requests to an affected device. A successful exploit could allow the attacker to execute arbitrary code with elevated privileges.
Note: The web-based management interface is enabled by default.
There are no workarounds that address this vulnerability.
This advisory is available at the following link:
https://se
Cisco
Multiple Cisco Analog Telephone Adapters Remote Code Execution Vulnerabilities
vendor_cisco·CVSS 3.0
CVE-2019-15241 Multiple Cisco Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15241: Multiple Cisco Analog Telephone Adapters Remote Code Execution Vulnerabilities
Multiple vulnerabilities in Cisco SPA Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper validation of user-supplied input to the web-based management interface. An attacker could exploit these vulnerabilities by authenticating to the web-based management interface and sending crafted requests to an affected device. A successful exploit could allow the attacker to execute arbitrary code with elevated privileges. Note: The web-based management interface is enabled by default. There are no
CVSS: 3.0
CWE: CWE-119, CWE-119
Bug IDs: CSCvq50494, CSCvr49341
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2019-10-16
Published