Cisco Security Monitoring, Analysis and Response System (CS-MARS) before 4.1.3 has an undocumented administrative account with a default password, which allows local users to gain privileges via the expert command.
Link | Tags |
---|---|
http://securityreason.com/securityalert/335 | third party advisory |
http://www.securityfocus.com/bid/16211 | patch vdb entry |
http://securitytracker.com/id?1015471 | vdb entry |
http://www.vupen.com/english/advisories/2006/0154 | vdb entry |
http://www.cisco.com/warp/public/707/cisco-sa-20060111-mars.shtml | patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24065 | vdb entry |
http://secunia.com/advisories/18424 | third party advisory |
http://seclists.org/bugtraq/2006/Jan/202 | mailing list |
http://www.osvdb.org/22346 | vdb entry |