CVE-2010-4303

Cisco Unified Videoconferencing (UVC) System 5110 and 5115, when the Linux operating system is used, uses world-readable permissions for the /etc/shadow file, which allows local users to discover encrypted passwords by reading this file, aka Bug ID CSCti54043.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.9 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:C/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 14%
VendorProductVersion
ciscounified_videoconferencing_system_5110_firmware
7.0.1.13.3
ciscounified_videoconferencing_system_5115_firmware
7.0.1.13.3
ciscounified_videoconferencing_system_5110
*
ciscounified_videoconferencing_system_5115
*
𝑥
= Vulnerable software versions
Common Weakness Enumeration