CVE Vulnerabilities

CVE-2010-4303

Published: Nov 22, 2010 | Modified: Nov 30, 2010
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.9 MEDIUM
AV:L/AC:L/Au:N/C:C/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cisco Unified Videoconferencing (UVC) System 5110 and 5115, when the Linux operating system is used, uses world-readable permissions for the /etc/shadow file, which allows local users to discover encrypted passwords by reading this file, aka Bug ID CSCti54043.

Affected Software

Name Vendor Start Version End Version
Unified_videoconferencing_system_5110_firmware Cisco 7.0.1.13.3 (including) 7.0.1.13.3 (including)
Unified_videoconferencing_system_5115_firmware Cisco 7.0.1.13.3 (including) 7.0.1.13.3 (including)

References