Vulnslist

find the latest Cisco vulnerabilities

Cisco WAAS Central Manager Remote Code Execution Vulnerability

cisco-sa-20130731-waascm · Critical · Published · Updated

Cisco Wide Area Application Services (WAAS) when configured as Central Manager (CM), contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on the affected system. Cisco has released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130731-waascm

Workarounds

There are no workarounds that mitigate this vulnerability.

CVEsCVE-2013-3443
Cisco Bug IDsCSCuh26626
CVSS ScoreBase 10.0
Base 10.0 AV:N/AC:L/Au:N/C:C/I:C/A:C/E:H/RL:OF/RC:C
Product Names From Source
Cisco Wide Area Application Services (WAAS)

CSAF Product Statuses

Product Status Source CVE Rows
Cisco Wide Area Application Services (WAAS) known_affected cisco_csaf CVE-2013-3443 1

Related Products

Product CVE Evidence
Cisco Wide Area Application Services (WAAS) CVE-2013-3443 Cisco OpenVuln
Cisco Wide Area Application Services Software CVE-2013-3443 Cisco OpenVuln