Vulnerability identifier: #VU78014
Vulnerability risk: Low
CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]
CVE-ID:
CWE-ID:
CWE-264
Exploitation vector: Local
Exploit availability: No
Vulnerable software:
BroadWorks Application Server
Server applications /
Other server solutions
BroadWorks Database Server
Server applications /
Other server solutions
BroadWorks Execution Server
Server applications /
Other server solutions
BroadWorks Messaging Server
Server applications /
Other server solutions
BroadWorks Network Database Server
Server applications /
Other server solutions
BroadWorks Network Function Manager
Server applications /
Other server solutions
BroadWorks Network Server
Server applications /
Other server solutions
BroadWorks Profile Server
Server applications /
Other server solutions
BroadWorks Sharing Server
Server applications /
Other server solutions
BroadWorks Video Server
Server applications /
Other server solutions
BroadWorks WebRTC Server
Server applications /
Other server solutions
BroadWorks Xtended Services Platform
Server applications /
Other server solutions
BroadWorks Application Delivery Platform
Server applications /
Other server solutions
BroadWorks Database Troubleshooting Server
Server applications /
Other server solutions
BroadWorks Media Server
Server applications /
Other server solutions
BroadWorks Service Control Function Server
Server applications /
Other server solutions
Vendor: Cisco Systems, Inc
Description
The vulnerability allows a local administrator to escalate privileges on the system.
The vulnerability exists due to insufficient input validation by the operating system CLI, which leads to security restrictions bypass and privilege escalation.
Mitigation
Install updates from vendor's website.
Vulnerable software versions
BroadWorks Application Server: 22.0 - 24.0
BroadWorks Database Server: 22.0
BroadWorks Execution Server: 22.0
BroadWorks Messaging Server: All versions
BroadWorks Network Database Server: 22.0
BroadWorks Network Function Manager: 22.0
BroadWorks Network Server: 22.0 - 23.0
BroadWorks Profile Server: 22.0 - 23.0
BroadWorks Sharing Server: All versions
BroadWorks Video Server: All versions
BroadWorks WebRTC Server: All versions
BroadWorks Xtended Services Platform: 22.0 - 23.0
BroadWorks Application Delivery Platform: before Rel_2023.05_1.290
BroadWorks Database Troubleshooting Server: before Rel_2023.05_1.290
BroadWorks Media Server: before Rel_2023.05_1.290
BroadWorks Service Control Function Server: before Rel_2023.05_1.290
External links
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bw-privesc-yw4ekrXW
Can this vulnerability be exploited remotely?
No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.