#VU78442 Permissions, Privileges, and Access Controls in Cisco Systems, Inc products - CVE-2023-20216


Vulnerability identifier: #VU78442

Vulnerability risk: Low

CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-20216

CWE-ID: CWE-264

Exploitation vector: Local

Exploit availability: No

Vulnerable software:
BroadWorks Application Server
Server applications / Other server solutions
BroadWorks Messaging Server
Server applications / Other server solutions
BroadWorks Network Server
Server applications / Other server solutions
BroadWorks Profile Server
Server applications / Other server solutions
BroadWorks Sharing Server
Server applications / Other server solutions
BroadWorks Video Server
Server applications / Other server solutions
BroadWorks WebRTC Server
Server applications / Other server solutions
BroadWorks Xtended Services Platform
Server applications / Other server solutions
BroadWorks Network Database Server
Server applications / Other server solutions
BroadWorks Network Function Manager
Server applications / Other server solutions
BroadWorks Application Delivery Platform
Server applications / Other server solutions
BroadWorks Database Server
Server applications / Other server solutions
BroadWorks Database Troubleshooting Server
Server applications / Other server solutions
BroadWorks Execution Server
Server applications / Other server solutions
BroadWorks Media Server
Server applications / Other server solutions
BroadWorks Service Control Function Server
Server applications / Other server solutions

Vendor: Cisco Systems, Inc

Description

The vulnerability allows a local administrator to escalate privileges on the system.

The vulnerability exists due to incorrect implementation of user role permissions in the privilege management functionality, which leads to security restrictions bypass and privilege escalation.

Mitigation
Install updates from vendor's website.

Vulnerable software versions

BroadWorks Application Server: 22.0 - 24.0

BroadWorks Messaging Server: All versions

BroadWorks Network Server: 22.0 - 23.0

BroadWorks Profile Server: 22.0 - 23.0

BroadWorks Sharing Server: All versions

BroadWorks Video Server: All versions

BroadWorks WebRTC Server: All versions

BroadWorks Xtended Services Platform: 22.0 - 23.0

BroadWorks Network Database Server: 22.0

BroadWorks Network Function Manager: 22.0

BroadWorks Application Delivery Platform: before Rel_2023.05_1.291

BroadWorks Database Server: before Rel_2023.05_1.291

BroadWorks Database Troubleshooting Server: before Rel_2023.06_1.330

BroadWorks Execution Server: before Rel_2023.05_1.291

BroadWorks Media Server: before Rel_2023.05_1.291

BroadWorks Service Control Function Server: before Rel_2023.05_1.291


External links
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bw-priv-esc-qTgUZOsQ


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.


Latest bulletins with this vulnerability