CVE-2014-0666
 
Severity Score
4.3
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Directory traversal vulnerability in the Send Screen Capture implementation in Cisco Jabber 9.2(.1) and earlier on Windows allows remote attackers to upload arbitrary types of files, and consequently execute arbitrary code, via modified packets, aka Bug ID CSCug48056.
Vulnerbailidad d erecorrido de directorios en la implementación de Send Screen Capture de Cisco Jabber 9.2(.1) y anteriores en Windows permite a atacantes remotos subir tipos de archivo arbitrarios, y consecuentemente ejecutar código de forma arbitraria, a través de paquetes modificados, tambien conocido como Bug ID CSCug48056.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2014-01-02 CVE Reserved
- 2014-01-16 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
http://osvdb.org/102122 | Vdb Entry | |
http://secunia.com/advisories/56331 | Third Party Advisory | |
http://www.securityfocus.com/bid/64965 | Third Party Advisory | |
http://www.securitytracker.com/id/1029635 | Third Party Advisory | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/90435 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-0666 | 2017-08-29 | |
http://tools.cisco.com/security/center/viewAlert.x?alertId=32451 | 2017-08-29 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | <= 9.2\(.1\) Search vendor "Cisco" for product "Jabber" and version " <= 9.2\(.1\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.0 Search vendor "Cisco" for product "Jabber" and version "9.0" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.0\(.0\) Search vendor "Cisco" for product "Jabber" and version "9.0\(.0\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.0\(.1\) Search vendor "Cisco" for product "Jabber" and version "9.0\(.1\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.0\(.2\) Search vendor "Cisco" for product "Jabber" and version "9.0\(.2\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.0\(.3\) Search vendor "Cisco" for product "Jabber" and version "9.0\(.3\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.0\(.4\) Search vendor "Cisco" for product "Jabber" and version "9.0\(.4\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.0\(.5\) Search vendor "Cisco" for product "Jabber" and version "9.0\(.5\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.1 Search vendor "Cisco" for product "Jabber" and version "9.1" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.1\(.0\) Search vendor "Cisco" for product "Jabber" and version "9.1\(.0\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.1\(.1\) Search vendor "Cisco" for product "Jabber" and version "9.1\(.1\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.1\(.2\) Search vendor "Cisco" for product "Jabber" and version "9.1\(.2\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.1\(.3\) Search vendor "Cisco" for product "Jabber" and version "9.1\(.3\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.1\(.4\) Search vendor "Cisco" for product "Jabber" and version "9.1\(.4\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.1\(.5\) Search vendor "Cisco" for product "Jabber" and version "9.1\(.5\)" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.2 Search vendor "Cisco" for product "Jabber" and version "9.2" | windows |
Affected
| ||||||
Cisco Search vendor "Cisco" | Jabber Search vendor "Cisco" for product "Jabber" | 9.2\(.0\) Search vendor "Cisco" for product "Jabber" and version "9.2\(.0\)" | windows |
Affected
|