Skip to main content

Cisco Digital Media Manager Privilege Escalation Vulnerability

Last Update Date: 19 Jan 2012 13:26 Release Date: 19 Jan 2012 5421 Views

RISK: Medium Risk

TYPE: Servers - Media Streaming

TYPE: Media Streaming

A vulnerability has identified in Cisco Digital Media Manager which could be exploited by a remote authenticated user to gain elevated privileges on the target system.

The system does not properly validate unreferenced URLs. A remote authenticated user can send a specially crafted URL via TCP port 8443 to access administrative resources and gain administrative privileges.

Cisco Show and Share is not directly affected by this vulnerability, but a user can exploit the Cisco Digital Media Manager to gain full access to Cisco Show and Share.


Impact

  • Elevation of Privilege

System / Technologies affected

  • Cisco Digital Media Manager 5.2.2 and prior versions
  • Cisco Digital Media Manager 5.2.3

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link