Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2012-1348

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2012-1348
Last Modified 07 Aug 2012 04:02:35
Published 06 Aug 2012 02:55:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2012-1348

Summary

Cisco Wide Area Application Services (WAAS) appliances with software 4.4, 5.0, and 5.1 include a one-way hash of a password within output text, which might allow remote attackers to obtain sensitive information via a brute-force attack on the hash string, aka Bug ID CSCty17279.

Vulnerable Systems

Application

  • Cisco Wide Area Application Services 4.4

  • Cisco Wide Area Application Services 5.0

  • Cisco Wide Area Application Services 5.1


References

CONFIRM - http://www.cisco.com/en/US/docs/app_ntwk_services/waas/waas/v501/release/notes/ws501xrn.pdf


Last Updated: 27 May 2016 10:55:02