CVE-2014-3352
Published Aug 30, 2014
Last updated 7 years ago
Overview
- Description
- Cisco Intelligent Automation for Cloud (aka Cisco Cloud Portal) 2008.3_SP9 and earlier does not properly consider whether a session is a problematic NULL session, which allows remote attackers to obtain sensitive information via crafted packets, related to an "iFrame vulnerability," aka Bug ID CSCuh84801.
- Source
- ykramarz@cisco.com
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-20
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:cisco:cloud_portal:*:sp9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D137473B-B2B6-4F04-BE6D-A713F182CEBC", "versionEndIncluding": "2008.3" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:9.1:sp1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B42A12C4-FBA7-4A24-BD71-652DB9329766" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:9.1:sp2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "257939F1-2806-48FC-A553-FBB8F974D041" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:9.1:sp3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D064F97D-C82A-4834-B331-320FC769EBBF" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "687EF522-0EDA-4572-B41C-5BEC96B93948" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:9.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C79C4C7F-A148-41CB-A80F-285CAFD9599E" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:9.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5D66F9DC-FDBB-471B-8453-5452A7C5D124" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB10A254-3C6F-45B5-BBE8-9970366CEE9E" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:2008.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3C3AC5D7-DBAE-4D3C-86E5-59B4C3180BA5" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:2008.3:sp6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A974D0F6-5E4F-46BC-AA87-4DF277AEDE92" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:2008.3:sp7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BC1BDD08-9265-4D63-B040-F633E6675BB6" }, { "criteria": "cpe:2.3:a:cisco:cloud_portal:2008.3:sp8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "336D887D-53BE-453C-A20F-326229EA088F" } ], "operator": "OR" } ] } ]