CVE-2004-0044
 
Severity Score
7.5
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Cisco Personal Assistant 1.4(1) and 1.4(2) disables password authentication when "Allow Only Cisco CallManager Users" is enabled and the Corporate Directory settings refer to the directory service being used by Cisco CallManager, which allows remote attackers to gain access with a valid username.
Cisco Personal Assistant 1.4(1) and 1.4(2) deshabilita autentificación del password cuando ""Allow Only Cisco CallManager Users"" está habilitado y las opciones del directorio corporativo se refieren al directorio de servicio que está usando Cisco CallManager, lo que permite que atacantes remotos tengan acceso con un nombre de usuario válido.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2004-01-12 CVE Reserved
- 2004-02-03 CVE Published
- 2023-08-09 EPSS Updated
- 2024-08-08 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://www.osvdb.org/3430 | Vdb Entry | |
http://www.securityfocus.com/bid/9384 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/14172 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.cisco.com/warp/public/707/cisco-sa-20040108-pa.shtml | 2017-10-10 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Personal Assistant Search vendor "Cisco" for product "Personal Assistant" | 1.4\(1\) Search vendor "Cisco" for product "Personal Assistant" and version "1.4\(1\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Personal Assistant Search vendor "Cisco" for product "Personal Assistant" | 1.4\(2\) Search vendor "Cisco" for product "Personal Assistant" and version "1.4\(2\)" | - |
Affected
|