Vulnerability Name: | CVE-2002-1190 (CCN-44545) | ||||||||
Assigned: | 2002-10-05 | ||||||||
Published: | 2002-10-05 | ||||||||
Updated: | 2017-07-11 | ||||||||
Summary: | Cisco Unity 2.x and 3.x uses well-known default user accounts, which could allow remote attackers to gain access and place arbitrary calls. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P) 6.5 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:H/RL:OF/RC:C)
6.5 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:H/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2002-1190 Source: CCN Type: cisco-sa-20021004-toll-fraud Cisco Security Advisory: Predefined Restriction Tables Allow Calls to International Operator Source: CISCO Type: Patch, Vendor Advisory 20021004 Predefined Restriction Tables Allow Calls to International Operator Source: XF Type: Vendor Advisory cisco-unity-insecure-configuration(10282) Source: CCN Type: OSVDB ID: 15200 Cisco Unity Arbitrary International Operator Calls Source: CCN Type: OSVDB ID: 8873 Cisco Unity Default User Accounts Source: XF Type: UNKNOWN cisco-unity-example-default-account(44545) Source: XF Type: UNKNOWN cisco-unity-example-default-account(44545) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |