Executive Summary
| Summary | |
|---|---|
| Title | CiscoWorks LAN Management Solution Remote Code Execution Vulnerabilities |
| Informations | |||
|---|---|---|---|
| Name | cisco-sa-20110914-lms | First vendor Publication | 2011-07-29 |
| Vendor | Cisco | Last vendor Modification | 2011-09-14 |
| Severity (Vendor) | N/A | Revision | 1.0 |
Security-Database Scoring CVSS v2
| Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C) | |||
|---|---|---|---|
| Cvss Base Score | 10 | Attack Range | Network |
| Cvss Impact Score | 10 | Attack Complexity | Low |
| Cvss Expoit Score | 10 | Authentification | None Required |
| Calculate full CVSS 2.0 Vectors scores | |||
Detail
Two vulnerabilities exist in CiscoWorks LAN Management Solution software that could allow an unauthenticated, remote attacker to execute arbitrary code on affected servers. Cisco has released free software updates that address these vulnerabilities. There are no workarounds available to mitigate these vulnerabilities. |
Original Source
| Url : http://www.cisco.com/en/US/products/products_security_advisory09186a0080b9 (...) |
CPE : Common Platform Enumeration
Open Source Vulnerability Database (OSVDB)
| id | Description |
|---|---|
| 77172 | Cisco Multiple Products brstart.exe SMARTS Request sm_read_string_length Valu... |
| 75442 | Cisco Multiple Products brstart.exe add_dm Request Parsing Remote Overflow |
Alert History
| Date | Informations |
|---|---|
| 2013-05-11 00:42:42 |
|

cisco-sa-20110914-lms
(Critical)





