#VU78014 Permissions, Privileges, and Access Controls in Cisco Systems, Inc products - CVE-2023-20210


Vulnerability identifier: #VU78014

Vulnerability risk: Low

CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-20210

CWE-ID: CWE-264

Exploitation vector: Local

Exploit availability: No

Vulnerable software:
BroadWorks Application Server
Server applications / Other server solutions
BroadWorks Database Server
Server applications / Other server solutions
BroadWorks Execution Server
Server applications / Other server solutions
BroadWorks Messaging Server
Server applications / Other server solutions
BroadWorks Network Database Server
Server applications / Other server solutions
BroadWorks Network Function Manager
Server applications / Other server solutions
BroadWorks Network Server
Server applications / Other server solutions
BroadWorks Profile Server
Server applications / Other server solutions
BroadWorks Sharing Server
Server applications / Other server solutions
BroadWorks Video Server
Server applications / Other server solutions
BroadWorks WebRTC Server
Server applications / Other server solutions
BroadWorks Xtended Services Platform
Server applications / Other server solutions
BroadWorks Application Delivery Platform
Server applications / Other server solutions
BroadWorks Database Troubleshooting Server
Server applications / Other server solutions
BroadWorks Media Server
Server applications / Other server solutions
BroadWorks Service Control Function Server
Server applications / Other server solutions

Vendor: Cisco Systems, Inc

Description

The vulnerability allows a local administrator to escalate privileges on the system.

The vulnerability exists due to insufficient input validation by the operating system CLI, which leads to security restrictions bypass and privilege escalation.

Mitigation
Install updates from vendor's website.

Vulnerable software versions

BroadWorks Application Server: 22.0 - 24.0

BroadWorks Database Server: 22.0

BroadWorks Execution Server: 22.0

BroadWorks Messaging Server: All versions

BroadWorks Network Database Server: 22.0

BroadWorks Network Function Manager: 22.0

BroadWorks Network Server: 22.0 - 23.0

BroadWorks Profile Server: 22.0 - 23.0

BroadWorks Sharing Server: All versions

BroadWorks Video Server: All versions

BroadWorks WebRTC Server: All versions

BroadWorks Xtended Services Platform: 22.0 - 23.0

BroadWorks Application Delivery Platform: before Rel_2023.05_1.290

BroadWorks Database Troubleshooting Server: before Rel_2023.05_1.290

BroadWorks Media Server: before Rel_2023.05_1.290

BroadWorks Service Control Function Server: before Rel_2023.05_1.290


External links
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bw-privesc-yw4ekrXW


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.


Latest bulletins with this vulnerability