CVE-2016-1403
Published Jun 4, 2016
Last updated 8 years ago
Overview
- Description
- CISCO IP 8800 phones with software 11.0.1 and earlier allow local users to gain privileges for OS command execution via crafted CLI commands, aka Bug ID CSCuz03005.
- Source
- ykramarz@cisco.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 5.9
- Exploitability score
- 1.8
- Vector string
- CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 7.2
- Impact score
- 10
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-20
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:cisco:ip_phone_8800_series_firmware:10.2\\(1\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C6B61C89-25CD-40A5-B27D-5DC9FCB49885" }, { "criteria": "cpe:2.3:o:cisco:ip_phone_8800_series_firmware:10.2\\(2\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0071D010-06B7-49BC-A2A7-11CE1383B113" }, { "criteria": "cpe:2.3:o:cisco:ip_phone_8800_series_firmware:10.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C6DAAB5A-70C6-4FEE-B6D4-91919B3A0CB4" }, { "criteria": "cpe:2.3:o:cisco:ip_phone_8800_series_firmware:10.3\\(2\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "05ED7BA0-6B55-4A04-BBAF-102B99248302" }, { "criteria": "cpe:2.3:o:cisco:ip_phone_8800_series_firmware:11.0\\(1\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "49CF653C-B5F5-427B-9FE9-D34D7B92AA13" } ], "operator": "OR" } ] } ]