Cisco Digital Media Manager Privilege Escalation Vulnerability
RISK: Medium Risk
TYPE: Servers - Media Streaming
A vulnerability has identified in Cisco Digital Media Manager which could be exploited by a remote authenticated user to gain elevated privileges on the target system.
The system does not properly validate unreferenced URLs. A remote authenticated user can send a specially crafted URL via TCP port 8443 to access administrative resources and gain administrative privileges.
Cisco Show and Share is not directly affected by this vulnerability, but a user can exploit the Cisco Digital Media Manager to gain full access to Cisco Show and Share.
Impact
- Elevation of Privilege
System / Technologies affected
- Cisco Digital Media Manager 5.2.2 and prior versions
- Cisco Digital Media Manager 5.2.3
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
Apply the updates
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120118-dmm
Vulnerability Identifier
Source
Related Link
Share with