Cisco Unity on IBM servers is shipped with default settings that should have been disabled by the manufacturer, which allows local or remote attackers to conduct unauthorized activities via (1) a "bubba" local user account, (2) an open TCP port 34571, or (3) when a local DHCP server is unavailable, a DHCP server on the manufacturer's test network.
Link | Tags |
---|---|
http://www.cisco.com/warp/public/707/cisco-sa-20031210-unity.shtml | patch vendor advisory |