CVE-2016-1408
high
CVSS v3
8.8
CVSS v2
6.5
VIR risk
8.8
Description
Cisco Prime Infrastructure 1.2 through 3.1 and Evolved Programmable Network Manager (EPNM) 1.2 and 2.0 allow remote authenticated users to execute arbitrary commands or upload files via a crafted HTTP request, aka Bug ID CSCuz01488.
Predictions
Exploit likelihood
92%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: psirt@cisco.com — http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160629-pi-epnm
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| cisco | prime_infrastructure | 1.2 | |
| cisco | prime_infrastructure | 1.2.0.103 | |
| cisco | prime_infrastructure | 1.2.1 | |
| cisco | prime_infrastructure | 1.3 | |
| cisco | prime_infrastructure | 1.3.0.20 | |
| cisco | prime_infrastructure | 1.4 | |
| cisco | prime_infrastructure | 1.4.0.45 | |
| cisco | prime_infrastructure | 1.4.1 | |
| cisco | prime_infrastructure | 1.4.2 | |
| cisco | prime_infrastructure | 2.0 | |
| cisco | prime_infrastructure | 2.1.0 | |
| cisco | prime_infrastructure | 2.2 | |
| cisco | prime_infrastructure | 2.2\(2\) | |
| cisco | prime_infrastructure | 3.0 | |
| cisco | prime_infrastructure | 3.1 | |
| cisco | evolved_programmable_network_manager | 1.2.0 | |
| cisco | evolved_programmable_network_manager | 1.2.1.3 | |
| cisco | evolved_programmable_network_manager | 1.2.200 | |
| cisco | evolved_programmable_network_manager | 1.2.300 | |
| cisco | evolved_programmable_network_manager | 1.2.400 | |
| cisco | evolved_programmable_network_manager | 1.2.500 | |
References
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160629-pi-epnm
- http://www.securityfocus.com/bid/91506
- http://www.securitytracker.com/id/1036197
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160629-pi-epnm
- http://www.securityfocus.com/bid/91506
- http://www.securitytracker.com/id/1036197
CWEs
CWE-20
Verify integrity in audit chain (admin only). AS-IS.