<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: ciscoworks]]></title>
    <link>http://securityratty.com/tag/ciscoworks</link>
    <description></description>
    <pubDate>Wed, 28 May 2008 21:56:52 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Advisory: CiscoWorks Arbitrary Code Execution Vulnerability]]></title>
      <link>http://securityratty.com/article/eb9528f08cdc201de20e6dcf32cbb6ef</link>
      <guid>http://securityratty.com/article/eb9528f08cdc201de20e6dcf32cbb6ef</guid>
      <description><![CDATA[Summary
Name: CiscoWorks Arbitrary Code Execution Vulnerability
Release Date: 28 May 2008
Reference: LSD003-2008
Discover: Dave Lewis
CVE Number: CVE-2008-2054
Vendor: Cisco Systems
Systems Affected:...]]></description>
      <content:encoded><![CDATA[<p><b>Summary</b></p>
<p>Name: CiscoWorks Arbitrary Code Execution Vulnerability<br />
Release Date: 28 May 2008<br />
Reference: LSD003-2008<br />
Discover: Dave Lewis<br />
CVE Number: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2054">CVE-2008-2054</a><br />
Vendor: Cisco Systems<br />
Systems Affected: CiscoWorks Common Services (various versions): Cisco Unified Operations Manager (CUOM), Cisco Unified Service Monitor (CUSM), CiscoWorks QoS Policy Manager (QPM), CiscoWorks LAN Management Solution (LMS), Cisco Security Manager (CSM), Cisco TelePresence Readiness Assessment Manager (CTRAM) </p>
<p>Risk: High<br />
Status: Published (Vendor Confirmed, Patch Available)</p>
<p><b>Description</b></p>
<p>CiscoWorks Common Services versions 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.1, and 3.1.1 contain a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code with elevated privileges.</p>
<p>This vulnerability exists due to an unspecified error in CiscoWorks Common Services.  An unauthenticated, remote attacker could exploit this vulnerability to execute arbitrary code resulting in complete system compromise.</p>
<p>Impact: Arbitrary code execution with elevated privileges. Fire bad.</p>
<p><b>TimeLine</b></p>
<p>Discovered:  14 February 2008<br />
Reported:  14 February 2008<br />
Fixed: 22 April 2008<br />
Patch Release: 28 May 2008<br />
Published: 28 May 2008</p>
<p><b>Technical Details</b></p>
<p>The vulnerability exists due to an unspecified error in CiscoWorks Common Services when it processes attacker-supplied URLs.  An unauthenticated, remote attacker could exploit this vulnerability through unspecified means to execute arbitrary code with elevated privileges. </p>
<p><b>Fix Information</b></p>
<p>This issue has now been resolved.  </p>
<p>The patch may be obtained from:</p>
<p><a href="http://www.cisco.com">http://www.cisco.com<br />
</a></p>
<p>Cisco Advisory<br />
<a href="http://www.cisco.com/en/US/products/products_security_advisory09186a00809a1f14.shtml">http://www.cisco.com/en/US/products/products_security_advisory09186a00809a1f14.shtml</a></p>
<p>I would like to thank Cisco for their professional response to this issue.</p>
<p><b>Liquidmatrix Security Digest</b><br />
http://www.liquidmatrix.org/blog/</p>
<p>2255B Queen Street East<br />
suite 156<br />
Toronto, Ontario<br />
Canada<br />
M4E 1G3</p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=081c8W"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=081c8W" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=ix1gJH"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=ix1gJH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=i9RM7h"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=i9RM7h" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=TUf3ch"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=TUf3ch" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=1Mwehh"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=1Mwehh" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=iGr2ah"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=iGr2ah" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/300286977" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 28 May 2008 21:56:52 +0000</pubDate>
      <category domain="http://securityratty.com/tag/vulnerability">vulnerability</category>
      <category domain="http://securityratty.com/tag/cisco">cisco</category>
      <category domain="http://securityratty.com/tag/cisco systems">cisco systems</category>
      <category domain="http://securityratty.com/tag/cisco advisory">cisco advisory</category>
      <category domain="http://securityratty.com/tag/cisco security manager">cisco security manager</category>
      <category domain="http://securityratty.com/tag/vulnerability exists due">vulnerability exists due</category>
      <category domain="http://securityratty.com/tag/execute arbitrary code">execute arbitrary code</category>
      <category domain="http://securityratty.com/tag/ciscoworks common services">ciscoworks common services</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/300286977/">Advisory: CiscoWorks Arbitrary Code Execution Vulnerability</source>
    </item>
  </channel>
</rss>
