CVE Vulnerabilities

CVE-2013-6685

Published: Nov 13, 2013 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.6 MEDIUM
AV:L/AC:M/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io minimus.io echohq.com

The firmware on Cisco Unified IP phones 8961, 9951, and 9971 uses weak permissions for memory block devices, which allows local users to gain privileges by mounting a device with a setuid file in its filesystem, aka Bug ID CSCui04382.

Affected Software

Name Vendor Start Version End Version
Unified_ip_phone_firmware Cisco - (including) - (including)

References