CVE-2013-3406

Published Nov 18, 2013

Last updated a month ago

Overview

Description
The "Files Available for Download" implementation in the Cisco Intelligent Automation for Cloud component in Cisco Services Portal 9.4(1) allows remote authenticated users to read arbitrary files via a crafted request, aka Bug ID CSCug65687.
Source
psirt@cisco.com
NVD status
Deferred

Risk scores

CVSS 2.0

Type
Primary
Base score
6.8
Impact score
6.9
Exploitability score
8
Vector string
AV:N/AC:L/Au:S/C:C/I:N/A:N

Weaknesses

nvd@nist.gov
CWE-20

Social media

Hype score
Not currently trending

Configurations