CVE-2015-4282

Cisco Mobility Services Engine (MSE) through 8.0.120.7 uses weak permissions for unspecified binary files, which allows local users to obtain root privileges by writing to a file, aka Bug ID CSCuv40504.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.9 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
ciscoCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 52%
VendorProductVersion
ciscomobility_services_engine
5.1_base:_base
ciscomobility_services_engine
5.2_base:_base
ciscomobility_services_engine
6.0_base:_base
ciscomobility_services_engine
7.0_base:_base
ciscomobility_services_engine
7.4.100.0
ciscomobility_services_engine
7.4.110.0
ciscomobility_services_engine
7.4.121.0
ciscomobility_services_engine
7.4_base:_base
ciscomobility_services_engine
7.5.102.101
ciscomobility_services_engine
7.6.100.0
ciscomobility_services_engine
7.6.120.0
ciscomobility_services_engine
7.6.132.0
ciscomobility_services_engine
8.0\(110.0\)
ciscomobility_services_engine
8.0_base:_base
𝑥
= Vulnerable software versions
Common Weakness Enumeration