CVE-2013-1196

EUVD-2013-1236
The command-line interface in Cisco Secure Access Control System (ACS), Identity Services Engine Software, Context Directory Agent, Application Networking Manager (ANM), Prime Network Control System, Prime LAN Management Solution (LMS), Prime Collaboration, Unified Provisioning Manager, Network Services Manager, Prime Data Center Network Manager (DCNM), and Quad does not properly validate input, which allows local users to obtain root privileges via unspecified vectors, aka Bug IDs CSCug29384, CSCug13866, CSCug29400, CSCug29406, CSCug29411, CSCug29413, CSCug29416, CSCug29418, CSCug29422, CSCug29425, and CSCug29426, a different issue than CVE-2013-1125.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:S/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 24%
Affected Products (NVD)
VendorProductVersion
ciscoapplication_networking_manager
-
ciscocontext_directory_agent
-
ciscoidentity_services_engine_software
-
cisconetwork_services_manager
-
ciscoprime_collaboration
-
ciscoprime_data_center_network_manager
-
ciscoprime_lan_management_solution
-
ciscoprime_network_control_system
-
ciscoquad
-
ciscosecure_access_control_system
-
ciscounified_provisioning_manager
-
𝑥
= Vulnerable software versions