CVE-2010-0138
Published Jan 21, 2010
Last updated 7 years ago
Overview
- Description
- Buffer overflow in Cisco CiscoWorks Internetwork Performance Monitor (IPM) 2.6 and earlier on Windows, as distributed in CiscoWorks LAN Management Solution (LMS), allows remote attackers to execute arbitrary code via a malformed getProcessName CORBA General Inter-ORB Protocol (GIOP) request, related to a "third-party component," aka Bug ID CSCsv62350.
- Source
- ykramarz@cisco.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 10
- Impact score
- 10
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:cisco:ciscoworks_internetwork_performance_monitor:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B92B0DA0-5DB4-4FD4-A01F-A7946B9DD075", "versionEndIncluding": "2.6" }, { "criteria": "cpe:2.3:a:cisco:ciscoworks_internetwork_performance_monitor:2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A3F4BA5E-5FBB-49B2-A333-6EA5B990D58D" }, { "criteria": "cpe:2.3:a:cisco:ciscoworks_internetwork_performance_monitor:2.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "138006C6-536C-42AB-8912-C5CCC126B091" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "2CF61F35-5905-4BA9-AD7E-7DB261D2F256" } ], "operator": "OR" } ], "operator": "AND" } ]